UBUNTU-CVE-2026-5501

Source
https://ubuntu.com/security/CVE-2026-5501
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-5501.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2026-5501
Upstream
  • CVE-2026-5501
Published
2026-04-10T04:17:00Z
Modified
2026-05-26T19:29:37.242058579Z
Severity
  • 8.6 (High) CVSS_V4 - CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N CVSS Calculator
  • 8.1 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N CVSS Calculator
  • Ubuntu - medium
Summary
[none]
Details

wolfSSLX509verify_cert in the OpenSSL compatibility layer accepts a certificate chain in which the leaf's signature is not checked, if the attacker supplies an untrusted intermediate with Basic Constraints CA:FALSE that is legitimately signed by a trusted root. An attacker who obtains any leaf certificate from a trusted CA (e.g. a free DV cert from Let's Encrypt) can forge a certificate for any subject name with any public key and arbitrary signature bytes, and the function returns WOLFSSL_SUCCESS / X509_V_OK. The native wolfSSL TLS handshake path (ProcessPeerCerts) is not susceptible and the issue is limited to applications using the OpenSSL compatibility API directly, which would include integrations of wolfSSL into nginx and haproxy.

References

Affected packages

Ubuntu:16.04:LTS
wolfssl

Package

Name
wolfssl
Purl
pkg:deb/ubuntu/wolfssl?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

3.*
3.4.8+dfsg-1

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "libcyassl5",
            "binary_version": "3.4.8+dfsg-1"
        },
        {
            "binary_name": "libwolfssl0",
            "binary_version": "3.4.8+dfsg-1"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-5501.json"
Ubuntu:18.04:LTS
wolfssl

Package

Name
wolfssl
Purl
pkg:deb/ubuntu/wolfssl?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

3.*
3.10.2+dfsg-2
3.12.0+dfsg-1
3.12.2+dfsg-1
3.13.0+dfsg-1

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "libwolfssl15",
            "binary_version": "3.13.0+dfsg-1"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-5501.json"
Ubuntu:20.04:LTS
wolfssl

Package

Name
wolfssl
Purl
pkg:deb/ubuntu/wolfssl?arch=source&distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

4.*
4.1.0+dfsg-2
4.2.0+dfsg-1
4.2.0+dfsg-2
4.2.0+dfsg-3
4.3.0+dfsg-2

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "libwolfssl24",
            "binary_version": "4.3.0+dfsg-2"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-5501.json"
Ubuntu:22.04:LTS
wolfssl

Package

Name
wolfssl
Purl
pkg:deb/ubuntu/wolfssl?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

4.*
4.6.0-3
5.*
5.0.0-1
5.1.1-1
5.2.0-1
5.2.0-2

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "libwolfssl32",
            "binary_version": "5.2.0-2"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-5501.json"
Ubuntu:24.04:LTS
wolfssl

Package

Name
wolfssl
Purl
pkg:deb/ubuntu/wolfssl?arch=source&distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

5.*
5.5.4-2
5.5.4-2.1
5.6.4-2
5.6.6-1.2
5.6.6-1.3
5.6.6-1.3build1

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "libwolfssl42t64",
            "binary_version": "5.6.6-1.3build1"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-5501.json"
Ubuntu:25.10
wolfssl

Package

Name
wolfssl
Purl
pkg:deb/ubuntu/wolfssl?arch=source&distro=questing

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

5.*
5.7.2-0.1

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "libwolfssl42t64",
            "binary_version": "5.7.2-0.1"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-5501.json"
Ubuntu:26.04:LTS
wolfssl

Package

Name
wolfssl
Purl
pkg:deb/ubuntu/wolfssl?arch=source&distro=resolute

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

5.*
5.7.2-0.1
5.8.2-1.2
5.8.4-1
5.9.1-0.1

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "libwolfssl44",
            "binary_version": "5.9.1-0.1"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-5501.json"