Search CVE reports


Toggle filters

1 – 10 of 85 results


CVE-2026-34877

Medium priority
Needs evaluation

(An issue was discovered in Mbed TLS versions from 2.19.0 up to 3.6.5, ...)

1 affected package

mbedtls

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mbedtls Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-34876

Medium priority
Needs evaluation

(An issue was discovered in Mbed TLS 3.x before 3.6.6. An out-of-bounds ...)

1 affected package

mbedtls

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mbedtls Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-34873

Medium priority
Needs evaluation

An issue was discovered in Mbed TLS 3.5.0 through 4.0.0. Client impersonation can occur while resuming a TLS 1.3 session.

1 affected package

mbedtls

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mbedtls Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-34872

Medium priority
Needs evaluation

An issue was discovered in Mbed TLS 3.5.x and 3.6.x through 3.6.5 and TF-PSA-Crypto 1.0. There is a lack of contributory behavior in FFDH due to improper input validation. Using finite-field Diffie-Hellman, the other party can...

1 affected package

mbedtls

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mbedtls Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-66442

Medium priority
Needs evaluation

In Mbed TLS through 4.0.0, there is a compiler-induced timing side channel (in RSA and CBC/ECB decryption) that only occurs with LLVM's select-optimize feature. TF-PSA-Crypto through 1.0.0 is also affected.

1 affected package

mbedtls

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mbedtls Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-34875

Medium priority
Needs evaluation

(An issue was discovered in Mbed TLS through 3.6.5 and TF-PSA-Crypto 1. ...)

1 affected package

mbedtls

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mbedtls Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-34874

Medium priority
Needs evaluation

(An issue was discovered in Mbed TLS through 3.6.5 and 4.x through 4.0. ...)

1 affected package

mbedtls

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mbedtls Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-34871

Medium priority
Needs evaluation

(An issue was discovered in Mbed TLS before 3.6.6 and 4.x before 4.1.0 ...)

1 affected package

mbedtls

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mbedtls Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-25835

Medium priority
Needs evaluation

(Mbed TLS before 3.6.6 and TF-PSA-Crypto before 1.1.0 misuse seeds in a ...)

1 affected package

mbedtls

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mbedtls Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-25834

Medium priority
Needs evaluation

(Mbed TLS v3.3.0 up to 3.6.5 and 4.0.0 allows Algorithm Downgrade.)

1 affected package

mbedtls

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mbedtls Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages