- Package:
- release.debian.org
- Source:
- release.debian.org
- Submitter:
- Bastian Germann
- Date:
- 2026-07-17 09:39:02 UTC
- Severity:
- normal
- Tags:
[ Reason ] Forwarding from the Maintainer: I would like to patch some of the CVEs for wolfssl in Trixie. The prepared security updates fix some of the recent wolfSSL CVEs (tracked in #1140765 and #1140815). This is an alternative to #1136309 which has not been confirmed yet and would fix CVE-2026-5194 as well. [ Impact ] The user is vulnerable to CVE-2026-5194 CVE-2026-55962 CVE-2026-55967 CVE-2026-6092 CVE-2026-6094 CVE-2026-6329 CVE-2026-6331 CVE-2026-6678 CVE-2026-6681 CVE-2026-6731 CVE-2026-6325 CVE-2026-55961 CVE-2026-7511 CVE-2026-6450 CVE-2026-55960 [ Tests ] As I am forwarding this, I have only checked the debdiff to compile on trixie. The Maintainer may add his test approach. [ Risks ] As these are proper CVE fix backports there is much less risk than in #1136309 which imports a newer upstream version. [ Checklist ] [x] *all* changes are documented in the d/changelog [x] I reviewed all changes and I approve them [x] attach debdiff against the package in stable [x] the issue is verified as fixed in unstable [ Changes ] * CVE-2026-5194: require certificate signature OID to match issuer key OID. * CVE-2026-55960: validate negotiated certificate type for raw public keys. * CVE-2026-55961: reject degenerate certs-only PKCS#7 in PKCS7_verify. * CVE-2026-55962: require client cert on outstanding TLS 1.3 post-handshake auth. * CVE-2026-55967: reject AES-GCM cumulative size overflow in streaming update. * CVE-2026-6092: enforce Encrypt-then-MAC on the TLS resumption path. * CVE-2026-6094: bound encrypted content size in PKCS7 EnvelopedData. * CVE-2026-6325: bound index in SetSuitesHashSigAlgo to prevent OOB write. * CVE-2026-6329: reject PKCS#12 MAC length mismatch. * CVE-2026-6331: require exact HMAC tag length in EVP_DigestVerifyFinal. * CVE-2026-6450: reject CRLs with unrecognized critical extensions. * CVE-2026-6678: fix integer underflow in wc_PKCS7_DecryptOri. * CVE-2026-6681: respect caller output buffer size in PKCS7 decode. * CVE-2026-6731: apply DNS name constraints to Subject CN when no SAN. * CVE-2026-7511: report the verifying cert as the PKCS#7 signer.
I am updating the debdiff because the first submission had trixie-security in the changelog. This has to be trixie obviously. The Security Team asked us to go the stable release route.
Hi, Please go ahead. Thanks,
package release.debian.org tags 1141816 = trixie pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian trixie. Thanks for your contribution! Upload details ============== Package: wolfssl Version: 5.7.2-0.1+deb13u2 Explanation: fix digest, MAC, and AES-GCM validation [CVE-2026-5194 CVE-2026-6329 CVE-2026-6331 CVE-2026-55967]; fix PKCS7 bounds, overflow, and certificate handling [CVE-2026-6094 CVE-2026-6678 CVE-2026-6681 CVE-2026-7511]; ensure certificate validation [CVE-2026-55960 CVE-2026-55961 CVE-2026-6450 CVE-2026-6731]; fix TLS handshake state and algorithms [CVE-2026-55962 CVE-2026-6092 CVE-2026-6325]
package release.debian.org tags 1141816 = trixie pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian trixie. Thanks for your contribution! Upload details ============== Package: wolfssl Version: 5.7.2-0.1+deb13u2 Explanation: fix digest, MAC, and AES-GCM validation [CVE-2026-5194 CVE-2026-6329 CVE-2026-6331 CVE-2026-55967]; fix PKCS7 bounds, overflow, and certificate handling [CVE-2026-6094 CVE-2026-6678 CVE-2026-6681 CVE-2026-7511]; ensure certificate validation [CVE-2026-55960 CVE-2026-55961 CVE-2026-6450 CVE-2026-6731]; fix TLS handshake state and algorithms [CVE-2026-55962 CVE-2026-6092 CVE-2026-6325]