CVE-2026-41678

EUVD-2026-25584
rust-openssl provides OpenSSL bindings for the Rust programming language.  From  to before 0.10.78, aes::unwrap_key() contains an incorrect assertion: it checks that out.len() + 8 <= in_.len(), but this condition is reversed. The intended invariant is out.len() >= in_.len() - 8, ensuring the output buffer is large enough. Because of the inverted check, the function only accepts buffers at or below the minimum required size and rejects larger ones. If a smaller buffer is provided the function will write past the end of out by in_.len() - 8 - out.len() bytes, causing an out-of-bounds write from a safe public function. This vulnerability is fixed in 0.10.78.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.1 HIGH
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 16%
Affected Products (NVD)
VendorProductVersion
rust-openssl_projectrust-openssl
0.10.24 ≤
𝑥
< 0.10.78
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
rust-openssl
bookworm
no-dsa
bullseye
vulnerable
bullseye (security)
vulnerable
forky
0.10.79-1
fixed
sid
0.10.79-1
fixed
trixie
no-dsa
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
python311-cryptography
suse enterprise server 15 SP4
41.0.3-150400.16.25.1
fixed
suse enterprise server 15 SP5
41.0.3-150400.16.25.1
fixed
suse enterprise server 15 SP6
41.0.3-150600.23.9.1
fixed
Amazon Linux logo
Amazon Linux Releases
Amazon Package
Release
clamav1.5
Amazon Linux 2023
0:1.5.2-1.amzn2023.0.2
fixed
clamav1.5-data
Amazon Linux 2023
0:1.5.2-1.amzn2023.0.2
fixed
clamav1.5-debuginfo
Amazon Linux 2023
0:1.5.2-1.amzn2023.0.2
fixed
clamav1.5-debugsource
Amazon Linux 2023
0:1.5.2-1.amzn2023.0.2
fixed
clamav1.5-devel
Amazon Linux 2023
0:1.5.2-1.amzn2023.0.2
fixed
clamav1.5-doc
Amazon Linux 2023
0:1.5.2-1.amzn2023.0.2
fixed
clamav1.5-filesystem
Amazon Linux 2023
0:1.5.2-1.amzn2023.0.2
fixed
clamav1.5-freshclam
Amazon Linux 2023
0:1.5.2-1.amzn2023.0.2
fixed
clamav1.5-freshclam-debuginfo
Amazon Linux 2023
0:1.5.2-1.amzn2023.0.2
fixed
clamav1.5-lib
Amazon Linux 2023
0:1.5.2-1.amzn2023.0.2
fixed
clamav1.5-lib-debuginfo
Amazon Linux 2023
0:1.5.2-1.amzn2023.0.2
fixed
clamav1.5-milter
Amazon Linux 2023
0:1.5.2-1.amzn2023.0.2
fixed
clamav1.5-milter-debuginfo
Amazon Linux 2023
0:1.5.2-1.amzn2023.0.2
fixed
clamd1.5
Amazon Linux 2023
0:1.5.2-1.amzn2023.0.2
fixed
clamd1.5-debuginfo
Amazon Linux 2023
0:1.5.2-1.amzn2023.0.2
fixed