Back

MEDIUM

Heap buffer overflow in CertFromX509() via AuthorityKeyIdentifier

Published Apr 9, 2026

Description

Heap buffer overflow in CertFromX509 via AuthorityKeyIdentifier size confusion. A heap buffer overflow occurs when converting an X.509 certificate internally due to incorrect size handling of the AuthorityKeyIdentifier extension.

Affected products

Remediation

Red Hat statement

This vulnerability doesn't affect any versions of MariaDB as shipped with Red Hat Products. For Red Hat products MariaDB is compiled and linked against the system's OpenSSL library instead of using the MariaDB's bundled WolfSSL library routines.

Weaknesses (2)

References (6)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner wolfSSL
Published Apr 9, 2026
Updated Apr 10, 2026
Reserved Apr 2, 2026

CISA Vulnrichment

Updated Apr 10, 2026

NVD

Status Analyzed
Modified Jun 17, 2026

Red Hat

Severity Moderate
Public date Apr 9, 2026
Bugzilla 2457074

ENISA EUVD

Assigner wolfSSL
Published Apr 9, 2026
Updated Apr 10, 2026

GitHub

No data