CVE-2025-49087 | Mbed TLS up to 3.6.3 Block Cipher covert timing channel

SecurityVulns

A vulnerability was found in Mbed TLS up to 3.6.3. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Block Cipher Handler. The manipulation leads to covert timing channel.

This vulnerability is handled as CVE-2025-49087. The attack may be launched remotely. There is no exploit available.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More