VDB

GCVE-VVD-MAGEIA-2020-265

GCVE-VVD-MAGEIA-2020-265
Advisory Published
Vulnetix · Advisory published June 16, 2020
Updated mbedtls packages fix security vulnerability Fix side channel in ECC code that allowed an adversary with access to precise enough timing and memory access information (typically an untrusted operating system attacking a secure enclave) to fully recover an ECDSA private key. (CVE-2020-10932) Fix a potentially remotely exploitable buffer overread in a DTLS client when parsing the Hello Verify Request message.

Affected Products

VendorProductVersionsPlatforms
Mageiambedtls0 (affected), 2.16.6-1.mga7 (unaffected)

Browse GCVE Records

100 records in the GCVE database · Updated April 16, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›