{"schema_version":"1.7.5","id":"CVE-2026-45784","published":"2026-07-17T20:26:12.969Z","modified":"2026-07-25T03:56:43.143428681Z","aliases":["GHSA-phqj-4mhp-q6mq"],"related":["CGA-g29r-cj9q-7phv","SUSE-SU-2026:22554-1","SUSE-SU-2026:22583-1","SUSE-SU-2026:22589-1","SUSE-SU-2026:22593-1","SUSE-SU-2026:22615-1","SUSE-SU-2026:22622-1","SUSE-SU-2026:22624-1","SUSE-SU-2026:22787-1","SUSE-SU-2026:2807-1","SUSE-SU-2026:2825-1","SUSE-SU-2026:2826-1","SUSE-SU-2026:2831-1","SUSE-SU-2026:2832-1","SUSE-SU-2026:2975-1","SUSE-SU-2026:2976-1","SUSE-SU-2026:2977-1","SUSE-SU-2026:3022-1","SUSE-SU-2026:3026-1","SUSE-SU-2026:3040-1","SUSE-SU-2026:3152-1","openSUSE-SU-2026:11210-1","openSUSE-SU-2026:11222-1","openSUSE-SU-2026:11223-1","openSUSE-SU-2026:11224-1","openSUSE-SU-2026:11255-1","openSUSE-SU-2026:11262-1","openSUSE-SU-2026:11274-1","openSUSE-SU-2026:11275-1","openSUSE-SU-2026:21274-1","openSUSE-SU-2026:21285-1","openSUSE-SU-2026:21292-1","openSUSE-SU-2026:21294-1","openSUSE-SU-2026:21386-1","openSUSE-SU-2026:21406-1"],"summary":"rust-openssl: Potential out-of-bounds write in `CipherCtxRef::cipher_update_inplace` for AES-KW-PAD ciphers","details":"rust-openssl provides OpenSSL bindings for the Rust programming language. From 0.10.50 until 0.10.80, CipherCtxRef::cipher_update_inplace in openssl/src/cipher_ctx.rs incorrectly sized output buffers when used with AES key-wrap-with-padding ciphers EVP_aes_{128,192,256}_wrap_pad. For a non-multiple-of-8 input, OpenSSL writes up to 7 bytes past the end of the caller's buffer or Vec, producing attacker-controllable heap corruption when the plaintext length is attacker-influenced. This issue is fixed in version 0.10.80.","affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/rust-openssl/rust-openssl","events":[{"introduced":"8395a89532e257eee6769f6e60b74bfb6cf951cc"},{"fixed":"19eceb26f2404aae187e5444e65c404ebc1348a7"},{"fixed":"35be7ae43b207fc0448a648a21e9156bc360c9af"}],"database_specific":{"extracted_events":[{"introduced":"0.10.50"},{"fixed":"0.10.80"}],"source":["AFFECTED_FIELD","REFERENCES"]}}],"versions":["openssl-v0.10.79","openssl-sys-v0.9.115","openssl-v0.10.78","openssl-sys-v0.9.114","openssl-v0.10.77","openssl-sys-v0.9.113","openssl-v0.10.76","openssl-sys-v0.9.112","openssl-v0.10.75","openssl-sys-v0.9.111","openssl-v0.10.74","openssl-sys-v0.9.110","openssl-v0.10.73","openssl-sys-v0.9.109","openssl-sys-v0.9.108","openssl-v0.10.72","openssl-sys-v0.9.107","openssl-v0.10.71","openssl-sys-v0.9.106","openssl-v0.10.70","openssl-sys-v0.9.105","openssl-v0.10.69","openssl-v0.10.68","openssl-v0.10.67","openssl-sys-v0.9.104","openssl-v0.10.66","openssl-v0.10.65","openssl-sys-v0.9.103","openssl-sys-v0.9.102","openssl-sys-v0.9.101","openssl-v0.10.64","openssl-sys-v0.9.100","openssl-v0.10.63","openssl-sys-v0.9.99","openssl-v0.10.62","openssl-sys-v0.9.98","openssl-v0.10.61","openssl-sys-v0.9.97","openssl-v0.10.60","openssl-sys-v0.9.96","openssl-v0.10.59","openssl-sys-v0.9.95","openssl-v0.10.58","openssl-sys-v0.9.94","openssl-sys-v0.9.93","openssl-v0.10.57","openssl-sys-v0.9.92","openssl-v0.10.56","openssl-sys-v0.9.91","openssl-sys-v0.9.90","openssl-v0.10.55","openssl-sys-v0.9.89","openssl-v0.10.54","openssl-v0.10.53","openssl-sys-v0.9.88","openssl-v0.10.52","openssl-sys-v0.9.87","openssl-v0.10.51","openssl-sys-v0.9.86","openssl-v0.10.50"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-45784.json"}}],"references":[{"type":"WEB","url":"https://github.com/rust-openssl/rust-openssl/releases/tag/openssl-v0.10.80"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/45xxx/CVE-2026-45784.json"},{"type":"ADVISORY","url":"https://github.com/rust-openssl/rust-openssl/security/advisories/GHSA-phqj-4mhp-q6mq"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-45784"},{"type":"FIX","url":"https://github.com/rust-openssl/rust-openssl/commit/19eceb26f2404aae187e5444e65c404ebc1348a7"},{"type":"FIX","url":"https://github.com/rust-openssl/rust-openssl/pull/2638"}],"database_specific":{"cna_assigner":"GitHub_M","cwe_ids":["CWE-131","CWE-787"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/45xxx/CVE-2026-45784.json"},"severity":[{"type":"CVSS_V4","score":"CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N"}]}