wolfSSL has released an update to wolfGuard, our FIPS-validated algorithm port of WireGuard. We recommend updating.
Highlights from this release:
- AES-GCM crash fix: resolves a kernel panic on kernels dated after March 2026.
- Cookie security fix: sensitive cryptographic material is now reliably wiped on all validation error paths.
- Configuration sync fix: corrects a logic error in peer sync that could leave configuration state incorrect.
- Memory leak fix: resolves a SHA object leak in the Noise handshake (significant on busy gateways over time).
- Stability and compatibility: improvements for kernel 7.x, IPv6 on newer kernels, and ratelimiter correctness.
Check out wolfGuard on GutHub!
If you have questions about any of the above, please contact us at facts@wolfssl.com or call us at +1 425 245 8247
Download wolfSSL Now

