CVE-2021-44732
20.12.2021, 08:15
Mbed TLS before 3.0.1 has a double free in certain out-of-memory conditions, as demonstrated by an mbedtls_ssl_set_session() failure.Enginsight
Vendor | Product | Version |
---|---|---|
arm | mbed_tls | 𝑥 < 2.16.12 |
arm | mbed_tls | 2.17.0 ≤ 𝑥 < 2.28.0 |
arm | mbed_tls | 3.0.0 |
arm | mbed_tls | 3.0.0:preview1 |
debian | debian_linux | 10.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References