Описание
In Mbed TLS through 4.0.0, there is a compiler-induced timing side channel (in RSA and CBC/ECB decryption) that only occurs with LLVM's select-optimize feature. TF-PSA-Crypto through 1.0.0 is also affected.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | deferred | 2026-04-13 |
| esm-apps-legacy/xenial | deferred | 2026-04-13 |
| esm-apps/bionic | deferred | 2026-04-13 |
| esm-apps/focal | deferred | 2026-04-13 |
| esm-apps/jammy | deferred | 2026-04-13 |
| esm-apps/noble | deferred | 2026-04-13 |
| esm-apps/resolute | deferred | 2026-04-13 |
| esm-apps/xenial | ignored | end of ESM support, was deferred [2026-04-13] |
| jammy | deferred | 2026-04-13 |
| noble | deferred | 2026-04-13 |
Показывать по
Ссылки на источники
EPSS
5.1 Medium
CVSS3
Связанные уязвимости
In Mbed TLS through 4.0.0, there is a compiler-induced timing side channel (in RSA and CBC/ECB decryption) that only occurs with LLVM's select-optimize feature. TF-PSA-Crypto through 1.0.0 is also affected.
In Mbed TLS through 4.0.0, there is a compiler-induced timing side channel (in RSA and CBC/ECB decryption) that only occurs with LLVM's select-optimize feature. TF-PSA-Crypto through 1.0.0 is also affected.
In Mbed TLS through 4.0.0, there is a compiler-induced timing side channel (in RSA and CBC/ECB decryption) that only occurs with LLVM's select-optimize feature. TF-PSA-Crypto through 1.0.0 is also affected.
In Mbed TLS through 4.0.0, there is a compiler-induced timing side cha ...
In Mbed TLS through 4.0.0, there is a compiler-induced timing side channel (in RSA and CBC/ECB decryption) that only occurs with LLVM's select-optimize feature. TF-PSA-Crypto through 1.0.0 is also affected.
EPSS
5.1 Medium
CVSS3