Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-11932

Опубликовано: 21 нояб. 2025
Источник: nvd
CVSS3: 4.3
EPSS Низкий

Описание

The server previously verified the TLS 1.3 PSK binder using a non-constant time method which could potentially leak information about the PSK binder

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:wolfssl:wolfssl:5.8.2:*:*:*:*:*:*:*

EPSS

Процентиль: 1%
0.00011
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-203

Связанные уязвимости

CVSS3: 4.3
ubuntu
3 месяца назад

The server previously verified the TLS 1.3 PSK binder using a non-constant time method which could potentially leak information about the PSK binder

msrc
2 месяца назад

Timing Side-Channel in PSK Binder Verification

CVSS3: 4.3
debian
3 месяца назад

The server previously verified the TLS 1.3 PSK binder using a non-cons ...

CVSS3: 4.3
github
3 месяца назад

The server previously verified the TLS 1.3 PSK binder using a non-constant time method which could potentially leak information about the PSK binder

EPSS

Процентиль: 1%
0.00011
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-203