Source: mbedtls
Version: 2.28.3-1
Severity: important
Tags: bookworm security
CVE-ID: CVE-2025-47917

Hi,

The following vulnerability affects the Bookworm mbedtls package version 
2.28.3-1.

CVE-2025-47917:
Misleading memory management in mbedtls_x509_string_to_names()

This issue appears to have already been fixed in the mbedtls/3.6.4-1.
But Bookworm version is still vulnerable.

Regards,
Syeda Shagufta Naaz

Reply via email to