ARM mbed TLS before 2.12.0, before 2.7.5, and before 2.1.14 allows remote attackers to achieve partial plaintext recovery (for a CBC based ciphersuite) via a timing-based side-channel attack. This vulnerability exists because of an incorrect fix (with a wrong SHA-384 calculation) for CVE-2013-0169.
CVSS Details
- CVSS 3.1 Base Score: 5.9
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade mbedtls3Upgrade mbedtlsUpgrade mbedtls2 | Aug 15, 2018 | Jul 28, 2018 |
| Debian | — | Upgrade mbedtls | Sep 18, 2018 | Jul 28, 2018 |
| Freebsd | — | Upgrade mbedtls | Aug 11, 2018 | Aug 10, 2018 |
| Ubuntu | — | Upgrade libmbedcrypto0Upgrade libmbedx509-0Upgrade libmbedtls10 | Feb 6, 2020 | Jul 28, 2018 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub