Skip to main content

Vendor/product archive

arm / tf-psa-crypto CVEs

Beta · best-effort

2 CVEs tagged to arm / tf-psa-crypto1 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2026-34872

Published Apr 1, 2026

An issue was discovered in Mbed TLS 3.5.x and 3.6.x through 3.6.5 and TF-PSA-Crypto 1.0. There is a lack of contributory behavior in FFDH due to improper input validation. Using f…

CVSS 9.1 · Critical
evidence mentions
3
Buzz score
23.9
Vendor/product tagsBeta · best-effort

CVE-2025-66442

Published Apr 1, 2026

In Mbed TLS through 4.0.0, there is a compiler-induced timing side channel (in RSA and CBC/ECB decryption) that only occurs with LLVM's select-optimize feature. TF-PSA-Crypto thro…

CVSS 5.1 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1