CVE-2020-36475
An issue was discovered in Mbed TLS before 2.25.0 (and before 2.16.9 LTS and before 2.7.18 LTS). The calculations perfor
An issue was discovered in Mbed TLS before 2.25.0 (and before 2.16.9 LTS and before 2.7.18 LTS). The calculations performed by mbedtls_mpi_exp_mod are not limited.
thus, supplying overly large parameters could lead to denial of service when generating Diffie-Hellman key pairs.
HIGH · CVSS 7.5
EPSS 0.00979
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0