Source: mbedtls
Version: 2.1.2-1
Severity: grave
Tags: security upstream

This security advisory was published for mbedTLS. All versions since 1.2
are affected.

https://tls.mbed.org/tech-updates/security-advisories/mbedtls-security-advisory-2018-02

CVE-2018-0497:
Remote plaintext recovery on use of CBC based ciphersuites through a
timing side-channel

CVE-2018-0498:
Plaintext recovery on use of CBC based ciphersuites through a cache
based side-channel

James

Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to