Skip to content

Update mbedtls to 3.5.2 #140

Open
Open
@nullr0ute

Description

There's a CVE (CVE-2024-23775) up to and including 3.5.1 which is a buffer overflow in mbedtls_x509_set_extension():
https://mbed-tls.readthedocs.io/en/latest/security-advisories/mbedtls-security-advisory-2024-01-2/

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions