CVE-2026-22791
published 2026-01-13CVE-2026-22791: openCryptoki is a PKCS#11 library and tools for Linux and AIX. In 3.25.0 and 3.26.0, there is a heap buffer overflow vulnerability in the CKM_ECDH_AES_KEY_WRAP…
PriorityP428medium6.1CVSS 3.1
AVLACLPRLUINSUCNILAH
EPSS
0.24%
14.7th percentile
openCryptoki is a PKCS#11 library and tools for Linux and AIX. In 3.25.0 and 3.26.0, there is a heap buffer overflow vulnerability in the CKM_ECDH_AES_KEY_WRAP implementation allows an attacker with local access to cause out-of-bounds writes in the host process by supplying a compressed EC public key and invoking C_WrapKey. This can lead to heap corruption, or denial-of-service.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | opencryptoki | — | — |
| opencryptoki | opencryptoki | — | — |
| opencryptoki_project | opencryptoki | — | — |
| opencryptoki_project | opencryptoki | — | — |
CVSS provenance
nvdv3.16.1MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H
osv6.1MEDIUM
vendor_debian6.6LOW
vendor_redhat6.6MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
openCryptoki: openCryptoki: Denial of Service and heap corruption via heap buffer overflow
vendor_redhat·2026-01-13·CVSS 6.6
CVE-2026-22791 [MEDIUM] CWE-131 openCryptoki: openCryptoki: Denial of Service and heap corruption via heap buffer overflow
openCryptoki: openCryptoki: Denial of Service and heap corruption via heap buffer overflow
openCryptoki is a PKCS#11 library and tools for Linux and AIX. In 3.25.0 and 3.26.0, there is a heap buffer overflow vulnerability in the CKM_ECDH_AES_KEY_WRAP implementation allows an attacker with local access to cause out-of-bounds writes in the host process by supplying a compressed EC public key and invoking C_WrapKey. This can lead to heap corruption, or denial-of-service.
A flaw was found in openCryptoki, a library for cryptographic operations. A local attacker can exploit a heap buffer overflow vulnerability within the CKM_ECDH_AES_KEY_WRAP implementation. By providing a compressed Elliptic Curve (EC) public key and invoking the C_WrapKey function, the attacker can trigger out-of-bounds wri
Debian
CVE-2026-22791: opencryptoki - openCryptoki is a PKCS#11 library and tools for Linux and AIX. In 3.25.0 and 3.2...
vendor_debian·2026·CVSS 6.6
CVE-2026-22791 [MEDIUM] CVE-2026-22791: opencryptoki - openCryptoki is a PKCS#11 library and tools for Linux and AIX. In 3.25.0 and 3.2...
openCryptoki is a PKCS#11 library and tools for Linux and AIX. In 3.25.0 and 3.26.0, there is a heap buffer overflow vulnerability in the CKM_ECDH_AES_KEY_WRAP implementation allows an attacker with local access to cause out-of-bounds writes in the host process by supplying a compressed EC public key and invoking C_WrapKey. This can lead to heap corruption, or denial-of-service.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
OSV
CVE-2026-22791: openCryptoki is a PKCS#11 library and tools for Linux and AIX
osv·2026-01-13·CVSS 6.1
CVE-2026-22791 [MEDIUM] CVE-2026-22791: openCryptoki is a PKCS#11 library and tools for Linux and AIX
openCryptoki is a PKCS#11 library and tools for Linux and AIX. In 3.25.0 and 3.26.0, there is a heap buffer overflow vulnerability in the CKM_ECDH_AES_KEY_WRAP implementation allows an attacker with local access to cause out-of-bounds writes in the host process by supplying a compressed EC public key and invoking C_WrapKey. This can lead to heap corruption, or denial-of-service.
No detection rules found.
No public exploits indexed.
Wiz
CVE-2026-22791 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 6.6
CVE-2026-22791 [MEDIUM] CVE-2026-22791 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-22791 :
NixOS vulnerability analysis and mitigation
openCryptoki is a PKCS#11 library and tools for Linux and AIX. In 3.25.0 and 3.26.0, there is a heap buffer overflow vulnerability in the CKM_ECDH_AES_KEY_WRAP implementation allows an attacker with local access to cause out-of-bounds writes in the host process by supplying a compressed EC public key and invoking C_WrapKey. This can lead to heap corruption, or denial-of-service.
Source : NVD
## 6.1
Score
Published January 13, 2026
Severity MEDIUM
CNA Score 6.6
Affected Technologies
NixOS
Linux Ubuntu
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 4.3
Exploitation Probability (EPSS) N/A
Affected packages and libraries
Bugzilla
CVE-2026-22791 openCryptoki: openCryptoki: Denial of Service and heap corruption via heap buffer overflow
bugzilla·2026-01-13·CVSS 6.1
CVE-2026-22791 [MEDIUM] CVE-2026-22791 openCryptoki: openCryptoki: Denial of Service and heap corruption via heap buffer overflow
CVE-2026-22791 openCryptoki: openCryptoki: Denial of Service and heap corruption via heap buffer overflow
openCryptoki is a PKCS#11 library and tools for Linux and AIX. In 3.25.0 and 3.26.0, there is a heap buffer overflow vulnerability in the CKM_ECDH_AES_KEY_WRAP implementation allows an attacker with local access to cause out-of-bounds writes in the host process by supplying a compressed EC public key and invoking C_WrapKey. This can lead to heap corruption, or denial-of-service.
2026-01-13
Published