Vulnerabilities
Report: CVE-2026-3549 - ECH parsing heap buffer overflow
CVE ID :CVE-2026-3549 Published : March 19, 2026, 9:17 p.m. | 28 minutes ago Description :Heap Overflow in TLS 1.3 ECH parsing. An integer underflow existed in ECH extension parsing logic when calculating a buffer length, which resulted in writing beyond the bounds of an allocated buffer. Note that in wolfSSL, ECH is off by default, and the ECH standard is still evolving. Severity: 8.3 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...