← العودة للجدول
CVE-2026-3336
Issue with AWS-LC: an open-source, general-purpose cryptographic library (CVE-2026-3336, CVE-2026-3337, CVE-2026-3338)
📅 2026-03-02 23:19:44
🔴 Critical 🔥 No AWS Security Exploit Cloud

📋 الوصف الكامل

Bulletin ID: 2026-005-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/03/02 14:30 PM PST Description: AWS-LC is an open-source, general-purpose cryptographic library. We identified three distinct issues: - CVE-2026-3336: PKCS7_verify Certificate Chain Validation Bypass in AWS-LC Improper certificate validation in PKCS7_verify() in AWS-LC allows an unauthentica

💻 الأنظمة المتأثرة

Issue with AWS-LC:

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-3336

📡 المصدر

AWS Security

✅ الحلول والتخفيف

Refer to CVE-2026-3336 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←