Can be triggered via empty PKCS#7 encrypted content in IKEv1 CERT payload. Fixes: 4076e3ee91 ("Extract PKCS#5 handling from pkcs8 plugin to separate helper class") Fixes: CVE-2026-35329
4076e3ee91