CVE-2026-34180 | OpenSSL up to 4.0.0 on Unix d2i_X509 out-of-bounds
A vulnerability marked as problematic has been reported in OpenSSL up to 3.0.20/3.4.5/3.5.6/3.6.2/4.0.0 on Unix. This affects the function d2i_X509. The manipulation leads to out-of-bounds read.
This vulnerability is traded as CVE-2026-34180. It is possible to initiate the attack remotely. There is no exploit available.
It is suggested to upgrade the affected component.