A certificate verification error in wolfSSL when building with the WOLFSSL_SYS_CA_CERTS and WOLFSSL_APPLE_NATIVE_CERT_VALIDATION options results in the wolfSSL
client failing to properly verify the server certificate's domain name,
allowing any certificate issued by a trusted CA to be accepted regardless of the hostname.
CVSS
No CVSS.
References
Link | Resource |
---|---|
http://github.com/wolfssl/wolfssl.git |
Configurations
No configuration.
History
22 Jul 2025, 13:06
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
18 Jul 2025, 23:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-18 23:15
Updated : 2025-07-22 13:06
NVD link : CVE-2025-7395
Mitre link : CVE-2025-7395
CVE.ORG link : CVE-2025-7395
JSON object : View
Products Affected
No product.
CWE
CWE-295
Improper Certificate Validation