CVE-2025-27810 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Mbed TLS before 2.28.10 and 3.x before 3.6.3, in some cases of failed memory allocation or hardware errors, uses uninitialized stack memory to compose the TLS F…
Medium CVSS: 5.4

CVE-2025-27810

Mbed TLS before 2.28.10 and 3.x before 3.6.3, in some cases of failed memory allocation or hardware errors, uses uninitialized stack memory to compose the TLS Finished message, potentially leading to authentication bypasses such as replays.
Vendor
Arm
Product
Mbed Tls
CWE
CWE-908
Yayın Tarihi
2025-03-25 06:15:41
Güncelleme
2025-10-30 15:05:35
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar