THREAT OPS › Threat News › [NVD] CVE-2026-14457 (HIGH 7.5) — Issue summary: In a server or client configuration with RFC7250 Raw Public Keys (RPKs)
enabled, and only the private key (with no associated certificate) configured locally,
a NULL pointer dereference may occur when the remote peer solicits raw public keys and
also sends the typi
[NVD] CVE-2026-14457 (HIGH 7.5) — Issue summary: In a server or client configuration with RFC7250 Raw Public Keys (RPKs) enabled, and only the private key (with no associated certificate) configured locally, a NULL pointer dereference may occur when the remote peer solicits raw public keys and also sends the typi
CVE-2026-14457 CVSS: 7.5 HIGH Published: 2026-08-25T13:17:49.533
Issue summary: In a server or client configuration with RFC7250 Raw Public Keys (RPKs) enabled, and only the private key (with no associated certificate) configured locally, a NULL pointer dereference may occur when the remote peer solicits raw public keys and also sends the typically omitted "signature_algorithms_cert" TLS extensio
Indicators of compromise
- CVE-2026-14457cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-14457