PT-2025-48503 · Julia · Mbedtls Jll

Published

2025-11-21

·

Updated

2025-11-21

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
An issue was discovered in Arm Mbed TLS before 2.23.0. A side channel allows recovery of an ECC private key, related to mbedtls ecp check pub priv, mbedtls pk parse key, mbedtls pk parse keyfile, mbedtls ecp mul, and mbedtls ecp mul restartable.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

JLSEC-2025-205

Affected Products

Mbedtls Jll