#1141816 trixie-pu: package wolfssl/5.7.2-0.1+deb13u2

#1141816#5
Date:
2026-07-10 12:38:05 UTC
From:
To:
[ Reason ]
Forwarding from the Maintainer:
I would like to patch some of the CVEs for wolfssl in Trixie.
The prepared security updates fix some of the recent wolfSSL CVEs
(tracked in #1140765 and #1140815).

This is an alternative to #1136309 which has not been confirmed yet
and would fix CVE-2026-5194 as well.

[ Impact ]
The user is vulnerable to
CVE-2026-5194
CVE-2026-55962
CVE-2026-55967
CVE-2026-6092
CVE-2026-6094
CVE-2026-6329
CVE-2026-6331
CVE-2026-6678
CVE-2026-6681
CVE-2026-6731
CVE-2026-6325
CVE-2026-55961
CVE-2026-7511
CVE-2026-6450
CVE-2026-55960

[ Tests ]
As I am forwarding this, I have only checked the debdiff to compile on
trixie. The Maintainer may add his test approach.

[ Risks ]
As these are proper CVE fix backports there is much less risk than in
#1136309 which imports a newer upstream version.

[ Checklist ]
  [x] *all* changes are documented in the d/changelog
  [x] I reviewed all changes and I approve them
  [x] attach debdiff against the package in stable
  [x] the issue is verified as fixed in unstable

[ Changes ]
  * CVE-2026-5194: require certificate signature OID to match issuer key OID.
  * CVE-2026-55960: validate negotiated certificate type for raw public keys.
  * CVE-2026-55961: reject degenerate certs-only PKCS#7 in PKCS7_verify.
  * CVE-2026-55962: require client cert on outstanding TLS 1.3 post-handshake auth.
  * CVE-2026-55967: reject AES-GCM cumulative size overflow in streaming update.
  * CVE-2026-6092: enforce Encrypt-then-MAC on the TLS resumption path.
  * CVE-2026-6094: bound encrypted content size in PKCS7 EnvelopedData.
  * CVE-2026-6325: bound index in SetSuitesHashSigAlgo to prevent OOB write.
  * CVE-2026-6329: reject PKCS#12 MAC length mismatch.
  * CVE-2026-6331: require exact HMAC tag length in EVP_DigestVerifyFinal.
  * CVE-2026-6450: reject CRLs with unrecognized critical extensions.
  * CVE-2026-6678: fix integer underflow in wc_PKCS7_DecryptOri.
  * CVE-2026-6681: respect caller output buffer size in PKCS7 decode.
  * CVE-2026-6731: apply DNS name constraints to Subject CN when no SAN.
  * CVE-2026-7511: report the verifying cert as the PKCS#7 signer.

#1141816#12
Date:
2026-07-10 12:43:45 UTC
From:
To:
I am updating the debdiff because the first submission had
trixie-security in the changelog. This has to be trixie obviously.
The Security Team asked us to go the stable release route.

#1141816#17
Date:
2026-07-16 11:08:47 UTC
From:
To:
Hi,

Please go ahead.

Thanks,

#1141816#24
Date:
2026-07-17 09:37:57 UTC
From:
To:
package release.debian.org
tags 1141816 = trixie pending
thanks

Hi,

The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian trixie.

Thanks for your contribution!

Upload details
==============

Package: wolfssl
Version: 5.7.2-0.1+deb13u2

Explanation: fix digest, MAC, and AES-GCM validation [CVE-2026-5194 CVE-2026-6329 CVE-2026-6331 CVE-2026-55967]; fix PKCS7 bounds, overflow, and certificate handling [CVE-2026-6094 CVE-2026-6678 CVE-2026-6681 CVE-2026-7511]; ensure certificate validation [CVE-2026-55960 CVE-2026-55961 CVE-2026-6450 CVE-2026-6731]; fix TLS handshake state and algorithms [CVE-2026-55962 CVE-2026-6092 CVE-2026-6325]

#1141816#29
Date:
2026-07-17 09:37:57 UTC
From:
To:
package release.debian.org
tags 1141816 = trixie pending
thanks

Hi,

The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian trixie.

Thanks for your contribution!

Upload details
==============

Package: wolfssl
Version: 5.7.2-0.1+deb13u2

Explanation: fix digest, MAC, and AES-GCM validation [CVE-2026-5194 CVE-2026-6329 CVE-2026-6331 CVE-2026-55967]; fix PKCS7 bounds, overflow, and certificate handling [CVE-2026-6094 CVE-2026-6678 CVE-2026-6681 CVE-2026-7511]; ensure certificate validation [CVE-2026-55960 CVE-2026-55961 CVE-2026-6450 CVE-2026-6731]; fix TLS handshake state and algorithms [CVE-2026-55962 CVE-2026-6092 CVE-2026-6325]