What is CVE-2026-43820?
A vulnerability in SwiftNIO SSL (CVE-2026-43820) causes out-of-bounds memory access when accessing Subject Alternative Names (SANs). This occurs because the code incorrectly assumes all SAN entries are backed by an ASN1_STRING buffer, potentially leading to data exposure or denial-of-service. Users should apply the recommended updates immediately.
Azərbaycanca: SwiftNIO SSL kitabxanasında CVE-2026-43820 zəifliyi aşkar edilib. Bu, sertifikatın Subject Alternative Name (SAN) sahəsinə daxil olarkən yanlış tip fərziyyəsi səbəbindən buferdən kənar yaddaş oxunuşuna (out-of-bounds memory access) gətirib çıxarır və potensial olaraq məlumat sızması və ya xidmət rəddi (DoS) riski yaradır. Təsirə məruz qalan sistemlərin yenilənməsi tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-125
FAQ2
What risks can the CVE-2026-43820 vulnerability in SwiftNIO SSL cause?
This vulnerability causes out-of-bounds memory access when accessing the Subject Alternative Name (SAN) field of a certificate, potentially leading to data exposure or denial-of-service (DoS).
What is the root cause of the CVE-2026-43820 vulnerability?
The vulnerability is caused by an incorrect type assumption where the code incorrectly assumes all SAN entries are backed by an ASN1_STRING buffer when accessing the Subject Alternative Name (SAN) field.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.