Vulnerability record · CVE-2026-43820 · published 23 July 2026
CVE-2026-43820: Apple swiftnio ssl out-of-bounds read vulnerability
Apple · Swiftnio Ssl
NIOSSLCertificate._subjectAlternativeNames provides access to the raw bytes for a cert's SANs. NIOSSL provides access to a buffer assumed to be backed by an ASN1_STRING, but not all SANs are backed by ASN1_STRING, so accessing the buffer for such a type can lead to out-of-bounds memory access. This vulnerability is addressed in swift-nio-ssl version 2.37.2.
Description
NIOSSLCertificate._subjectAlternativeNames provides access to the raw bytes for a cert's SANs. NIOSSL provides access to a buffer assumed to be backed by an ASN1_STRING, but not all SANs are backed by ASN1_STRING, so accessing the buffer for such a type can lead to out-of-bounds memory access. This vulnerability is addressed in swift-nio-ssl version 2.37.2.
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Affected products
1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| https://github.com/apple/swift-nio-ssl/security/advisories/GHSA-xfxg-9975-pc2j | Vendor AdvisoryExploit |
| https://github.com/apple/swift-nio-ssl/security/advisories/GHSA-xfxg-9975-pc2j | Vendor AdvisoryExploit |
Track CVE-2026-43820 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2026-43820), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.