| Summary | Issue summary: An attacker-controlled CMP (Certificate Management Protocol) Impact summary: A NULL pointer dereference causes a crash of the An attacker controlling a CMP server (or acting as a man-in-the-middle) could Applications that process untrusted CMP/CRMF messages may be affected. The FIPS modules in 4.0, 3.6, 3.5, 3.4, and 3.0 are not affected by this |
|---|---|
| Publication Date | June 10, 2026, 2:17 a.m. |
| Registration Date | June 10, 2026, 4:17 a.m. |
| Last Update | June 10, 2026, 2:17 a.m. |