Lucene search

K
redhatcveRedhat.comRH:CVE-2021-45451
HistoryMay 20, 2022 - 10:57 p.m.

CVE-2021-45451

2022-05-2022:57:18
redhat.com
access.redhat.com
16
mbed tls
security vulnerability
policy bypass
oracle-based decryption
untrusted application
memory locations

EPSS

0.003

Percentile

66.6%

In Mbed TLS before 3.1.0, psa_aead_generate_nonce allows policy bypass or oracle-based decryption when the output buffer is at memory locations accessible to an untrusted application.

EPSS

0.003

Percentile

66.6%