Skip to content

Fix OOB possibility in PKCS7_VerifySignedData#10441

Draft
padelsbach wants to merge 1 commit intowolfSSL:masterfrom
padelsbach:pkcs7-verify-fix
Draft

Fix OOB possibility in PKCS7_VerifySignedData#10441
padelsbach wants to merge 1 commit intowolfSSL:masterfrom
padelsbach:pkcs7-verify-fix

Conversation

@padelsbach
Copy link
Copy Markdown
Contributor

Description

Add checks and test cases to PKCS7_VerifySignedData to prevent out-of-bounds memory accesses.

Fixes zd 21778

Testing

TDD approach using new tests.

Checklist

  • added tests
  • updated/added doxygen
  • updated appropriate READMEs
  • Updated manual and documentation

@padelsbach
Copy link
Copy Markdown
Contributor Author

jenkins retest this please

Copy link
Copy Markdown

@wolfSSL-Fenrir-bot wolfSSL-Fenrir-bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Fenrir Automated Review — PR #10441

Scan targets checked: wolfcrypt-bugs, wolfcrypt-src

No new issues found in the changed files. ✅

@github-actions
Copy link
Copy Markdown

github-actions Bot commented May 9, 2026

MemBrowse Memory Report

No memory changes detected for:

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants