Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
3192 articles · 168085 vulns · 37/41 feeds (7d)
← Back to list
EST
PRE-CVE

PKCS#7 / CMS Parsing Issues in OpenSSL, WolfSSL, Bouncy Castle, & GnuPG

56% confidence

Description

The vulnerability arises from the failure to enforce the minimum length for the authentication tag as specified in the RFC, allowing an attacker to specify a one-byte tag length and use brute force to determine the correct tag value.

Related News (1 articles)

Tier C
oss-security4d ago
Re: Common PKCS#7 / CMS parsing issues in OpenSSL, WolfSSL, Bouncy Castle, & GnuPG
→ No new info (linked only)
CISA KEV❌ No
Actively exploited❌ No
CWECWE-20
PublishedJun 23, 2026
Last enriched4d ago
Trending Score10
Source articles1
Independent1
Info Completeness3/14
Missing: cve_id, vendor, product, versions, cvss, epss, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Pin to Dashboard

Verification

State: reported
Confidence: 56%

Vulnerability Timeline

CVE Published
Jun 23, 2026
Discovered by ZDM
Jun 23, 2026