Critical severity9.8NVD Advisory· Published Jan 28, 2020· Updated Jun 17, 2026
CVE-2014-2898
CVE-2014-2898
Description
wolfSSL CyaSSL before 2.9.4 allows remote attackers to have unspecified impact via multiple calls to the CyaSSL_read function which triggers an out-of-bounds read when an error occurs, related to not checking the return code and MAC verification failure.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- wolfSSL/CyaSSLdescription
Patches
Vulnerability mechanics
References
4- seclists.org/oss-sec/2014/q2/126nvdMailing ListThird Party Advisory
- seclists.org/oss-sec/2014/q2/130nvdMailing ListThird Party Advisory
- www.wolfssl.com/yaSSL/Blog/Entries/2014/4/11_wolfSSL_Security_Advisory__April_9%2C_2014.htmlnvdVendor Advisory
- www.wolfssl.com/yaSSL/Docs-cyassl-changelog.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.