github.compatch
https://github.com/wolfSSL/wolfssl/pull/10709 CVE-2026-55967
LOW
AES-GCM streaming APIs do not reject >64 GiB cumulative single messages, enabling counter wrap and keystream reuse
Record summary
CVE-2026-55967 has a selected CVSS score of 2.0 (low).
Description
AES-GCM encryption/decryption with extremely large cumulative single message sizes (>64 GiB) were not properly rejected by the streaming APIs, allowing counter wrap, keystream reuse, and consequent plaintext recovery.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Jun 25, 2026 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
wolfSSLBrowse wolfSSL / wolfSSLDefault status: unaffected | CVE List | 4.8.0 to ≤ 5.9.1 | affected |
References
3nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2026-55967 wolfssl.com
https://www.wolfssl.com/docs/security-vulnerabilities