Lucene search

K
osvGoogleOSV:CVE-2017-18187
HistoryFeb 14, 2018 - 5:29 p.m.

CVE-2017-18187

2018-02-1417:29:00
Google
osv.dev
9

AI Score

9.8

Confidence

High

EPSS

0.012

Percentile

85.1%

In ARM mbed TLS before 2.7.0, there is a bounds-check bypass through an integer overflow in PSK identity parsing in the ssl_parse_client_psk_identity() function in library/ssl_srv.c.

AI Score

9.8

Confidence

High

EPSS

0.012

Percentile

85.1%