CVE-2025-48965

Mbed TLS before 3.6.4 has a NULL pointer dereference because mbedtls_asn1_store_named_data can trigger conflicting data with val.p of NULL but val.len greater than zero.
Configurations

No configuration.

History

22 Jul 2025, 13:06

Type Values Removed Values Added
Summary
  • (es) Mbed TLS anterior a 3.6.4 tiene una desreferencia de puntero NULL porque mbedtls_asn1_store_named_data puede generar datos conflictivos con val.p de NULL pero val.len mayor que cero.

20 Jul 2025, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-20 18:15

Updated : 2025-07-22 13:06


NVD link : CVE-2025-48965

Mitre link : CVE-2025-48965

CVE.ORG link : CVE-2025-48965


JSON object : View

Products Affected

No product.

CWE
CWE-696

Incorrect Behavior Order