CVE-2026-13734 | Zephyr Project up to 4.4.1 WireGuard wg_crypto.c wg_process_data_message authentication replay

SecurityVulns

A vulnerability classified as critical was found in Zephyr Project Zephyr up to 4.4.1. This issue affects the function wg_process_data_message of the file subsys/net/lib/wireguard/wg_crypto.c of the component WireGuard. Executing a manipulation can lead to authentication bypass by capture-replay.

This vulnerability appears as CVE-2026-13734. The attack may be performed from remote. There is no available exploit.

Upgrading the affected component is advised.VulDB Recent EntriesRead More