CVE-2026-84854 PUBLISHED

Out of Bound Write on WibuKey for Windows

Assigner: wibu
Reserved: 02.09.2026 Published: 06.10.2026 Updated: 06.10.2026

In the WibuKey driver for Windows below Version 6.72, insufficient validation of user input when calculating the size of a kernel buffer could cause small amounts of data to be written outside the intended kernel buffer. This can lead to a system crash. Under unfavorable circumstances, adjacent kernel memory may be modified.

Metrics

CVSS Vector: CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS Score: 7

Product Status

Vendor wibu-systems-ag
Product wibukey
Versions Default: unaffected
  • affected from 0 to 6.72 (excl.)

Credits

  • 정기현(haro001) finder

References

Problem Types

  • CWE-787 Out-of-bounds write CWE