CVE-2021-37155

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
21/07/2021
Last modified:
29/07/2021

Description

wolfSSL 4.6.x through 4.7.x before 4.8.0 does not produce a failure outcome when the serial number in an OCSP request differs from the serial number in the OCSP response.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:wolfssl:wolfssl:*:*:*:*:*:*:*:* 4.6.0 (including) 4.8.0 (excluding)