Bug 2453209 (CVE-2026-32877) - CVE-2026-32877 Botan: Botan: Denial of Service via heap over-read during SM2 decryption
Summary: CVE-2026-32877 Botan: Botan: Denial of Service via heap over-read during SM2 ...
Keywords:
Status: NEW
Alias: CVE-2026-32877
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Product Security DevOps Team
QA Contact:
URL:
Whiteboard:
Depends On: 2453762 2453763 2453764 2453765 2453766 2453767
Blocks:
TreeView+ depends on / blocked
 
Reported: 2026-03-30 21:02 UTC by OSIDB Bzimport
Modified: 2026-04-01 07:01 UTC (History)
0 users

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description OSIDB Bzimport 2026-03-30 21:02:44 UTC
Botan is a C++ cryptography library. From version 2.3.0 to before version 3.11.0, during SM2 decryption, the code that checked the authentication code value (C3) failed to check that the encoded value was of the expected length prior to comparison. An invalid ciphertext can cause a heap over-read of up to 31 bytes, resulting in a crash or potentially other undefined behavior. This issue has been patched in version 3.11.0.


Note You need to log in before you can comment on or make changes to this bug.