VYPR

wolfProvider

by WolfSSL

CVEs (1)

  • CVE-2026-81019HigAug 28, 2026
    risk 0.41cvss 7.4epss

    wolfProvider before 1.2.2 generates the 8-byte explicit AES-GCM nonce once when the TLS write key is set and never increments it per record. As a result every TLS 1.2 and DTLS 1.2 AES-GCM record within a connection is encrypted under an identical key and nonce pair. Reusing a…