Loading
Generated remediation guidance and an executive summary. No account required.
In Sequoia before 2.1.0, aes_key_unwrap panics if passed a ciphertext that is too short. A remote attacker can take advantage of this issue to crash an application by sending a victim an encrypted message with a crafted PKESK or SKESK packet.
No affected products information available.
Cite this page
CVE-2025-67897. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2025-67897
Use CWE-195 to widen CVE-2025-67897 into its surrounding weakness, vendor, and product context.