mirror of
https://github.com/Mbed-TLS/mbedtls.git
synced 2025-10-26 00:37:41 +03:00
We have a CVE ID
Signed-off-by: Gilles Peskine <Gilles.Peskine@arm.com>
This commit is contained in:
@@ -2,4 +2,4 @@ Security
|
|||||||
* Fix a timing side channel in CBC-PKCS7 decryption that could
|
* Fix a timing side channel in CBC-PKCS7 decryption that could
|
||||||
allow an attacker who can submit chosen ciphertexts to recover
|
allow an attacker who can submit chosen ciphertexts to recover
|
||||||
some plaintexts through a timing-based padding oracle attack.
|
some plaintexts through a timing-based padding oracle attack.
|
||||||
Credits to Beat Heeb from Oberon microsystems AG. CVE-TODO
|
Credits to Beat Heeb from Oberon microsystems AG. CVE-2025-59438
|
||||||
|
|||||||
Reference in New Issue
Block a user