Security Advisory

CVE-2025-52496

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-07-04 00:00:00
Last updated 2025-11-03 20:05:50
Assigner mitre
State PUBLISHED

Description

Mbed TLS before 3.6.4 has a race condition in AESNI detection if certain compiler optimizations occur. An attacker may be able to extract an AES key from a multithreaded program, or perform a GCM forgery.