CVE-2026-14456 | OpenSSL up to 3.5.7/3.6.3/4.0.1 QUIC Server SSL_accept allocation of resources (Nessus ID 342040 / WID-SEC-2026-2843)
A vulnerability categorized as problematic has been discovered in OpenSSL up to 3.5.7/3.6.3/4.0.1. Affected by this vulnerability is the function SSL_accept of the component QUIC Server. Executing a manipulation can lead to allocation of resources.
This vulnerability appears as CVE-2026-14456. The attack may be performed from remote. There is no available exploit.
It is advisable to upgrade the affected component.