Feed/CVE-2026-56862
CVE-2026-56862HIGHCVSS 7.5

CVE-2026-56862

Published Aug 13, 2026·Updated Aug 14, 2026

NVD Description

Handshake messages, such as KeyUpdate, are always considered as state-advancing, regardless of whether a handshake has been completed or not. As a result, a malicious client can keep sending KeyUpdate messages to force the server to keep performing key derivation operations indefinitely.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free