Search CVE reports
1 – 10 of 85 results
(An issue was discovered in Mbed TLS versions from 2.19.0 up to 3.6.5, ...)
1 affected package
mbedtls
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| mbedtls | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
(An issue was discovered in Mbed TLS 3.x before 3.6.6. An out-of-bounds ...)
1 affected package
mbedtls
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| mbedtls | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
An issue was discovered in Mbed TLS 3.5.0 through 4.0.0. Client impersonation can occur while resuming a TLS 1.3 session.
1 affected package
mbedtls
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| mbedtls | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
An issue was discovered in Mbed TLS 3.5.x and 3.6.x through 3.6.5 and TF-PSA-Crypto 1.0. There is a lack of contributory behavior in FFDH due to improper input validation. Using finite-field Diffie-Hellman, the other party can...
1 affected package
mbedtls
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| mbedtls | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
In Mbed TLS through 4.0.0, there is a compiler-induced timing side channel (in RSA and CBC/ECB decryption) that only occurs with LLVM's select-optimize feature. TF-PSA-Crypto through 1.0.0 is also affected.
1 affected package
mbedtls
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| mbedtls | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
(An issue was discovered in Mbed TLS through 3.6.5 and TF-PSA-Crypto 1. ...)
1 affected package
mbedtls
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| mbedtls | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
(An issue was discovered in Mbed TLS through 3.6.5 and 4.x through 4.0. ...)
1 affected package
mbedtls
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| mbedtls | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
(An issue was discovered in Mbed TLS before 3.6.6 and 4.x before 4.1.0 ...)
1 affected package
mbedtls
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| mbedtls | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
(Mbed TLS before 3.6.6 and TF-PSA-Crypto before 1.1.0 misuse seeds in a ...)
1 affected package
mbedtls
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| mbedtls | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
(Mbed TLS v3.3.0 up to 3.6.5 and 4.0.0 allows Algorithm Downgrade.)
1 affected package
mbedtls
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| mbedtls | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |