CVE-2026-45784
EUVD-2026-4532217.07.2026, 21:17
rust-openssl provides OpenSSL bindings for the Rust programming language. From 0.10.50 until 0.10.80, CipherCtxRef::cipher_update_inplace in openssl/src/cipher_ctx.rs incorrectly sized output buffers when used with AES key-wrap-with-padding ciphers EVP_aes_{128,192,256}_wrap_pad. For a non-multiple-of-8 input, OpenSSL writes up to 7 bytes past the end of the caller's buffer or Vec, producing attacker-controllable heap corruption when the plaintext length is attacker-influenced. This issue is fixed in version 0.10.80.EnginsightAffected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| sfackler | openssl | 0.10.50 ≤ 𝑥 < 0.10.80 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| python311-cryptography |
| ||||||||||||
| snpguest |
|
Amazon Linux Releases
Amazon Package | |||
|---|---|---|---|
| cargo |
| ||
| cargo-debuginfo |
| ||
| clippy |
| ||
| clippy-debuginfo |
| ||
| rust |
| ||
| rust-analyzer |
| ||
| rust-analyzer-debuginfo |
| ||
| rust-debugger-common |
| ||
| rust-debuginfo |
| ||
| rust-debugsource |
| ||
| rust-doc |
| ||
| rust-gdb |
| ||
| rust-lldb |
| ||
| rust-src |
| ||
| rust-std-static |
| ||
| rust-std-static-wasm32-unknown-unknown |
| ||
| rust-std-static-wasm32-wasip1 |
| ||
| rust-toolset |
| ||
| rust-toolset-srpm-macros |
| ||
| rustfmt |
| ||
| rustfmt-debuginfo |
|
Common Weakness Enumeration
References