{"id":"openSUSE-SU-2026:21144-1","summary":"Security update for mbedtls","details":"This update for mbedtls fixes the following issues:\n\nChanges in mbedtls:\n\n- Update to 3.6.6 (LTS maintenance update from 3.6.1); security fixes\n  accumulated across the 3.6.2-3.6.6 releases:\n  * CVE-2024-49195 (boo#1231708): buffer underrun in pkwrite when\n    writing an opaque key pair\n  * CVE-2025-27809 (boo#1240051): certificate verification accepted\n    arbitrary hostnames\n  * CVE-2025-27810 (boo#1240052): possible authentication bypass on\n    failed memory allocation / hardware errors\n  * CVE-2025-47917 (boo#1246783): misleading memory management in\n    mbedtls_x509_string_to_names()\n  * CVE-2025-48965 (boo#1246784): NULL pointer dereference after\n    mbedtls_asn1_store_named_data()\n  * CVE-2025-49087 (boo#1246973): timing side channel in PKCS#7\n    padding removal\n  * CVE-2025-49600 (boo#1245808): unchecked return values in LMS\n    verification allow signature bypass via fault injection\n  * CVE-2025-49601 (boo#1245809): out-of-bounds read in\n    mbedtls_lms_import_public_key()\n  * CVE-2025-52496 (boo#1245810): race in AES-NI support detection can\n    lead to AES key extraction or GCM forgery\n  * CVE-2025-52497 (boo#1245811): one-byte heap underflow when parsing\n    PEM-encrypted material\n  * CVE-2025-54764 (boo#1252341): timing attacks in RSA operations\n  * CVE-2025-59438 (boo#1252454): padding-oracle attack via timing of\n    cipher error reporting\n  * CVE-2026-25833: PSA RNG state duplicated across fork()\n  * CVE-2026-25834: TLS 1.3 HelloRetryRequest man-in-the-middle\n    session-resumption downgrade\n  * CVE-2026-25835: RNG state duplicated when application/VM state is\n    cloned\n","modified":"2026-06-30T18:24:52.793970585Z","published":"2026-06-22T13:34:13Z","related":["CVE-2024-49195","CVE-2025-27809","CVE-2025-27810","CVE-2025-47917","CVE-2025-48965","CVE-2025-49087","CVE-2025-49600","CVE-2025-49601","CVE-2025-52496","CVE-2025-52497","CVE-2025-54764","CVE-2025-59438","CVE-2026-25833","CVE-2026-25834","CVE-2026-25835"],"upstream":["CVE-2024-49195","CVE-2025-27809","CVE-2025-27810","CVE-2025-47917","CVE-2025-48965","CVE-2025-49087","CVE-2025-49600","CVE-2025-49601","CVE-2025-52496","CVE-2025-52497","CVE-2025-54764","CVE-2025-59438","CVE-2026-25833","CVE-2026-25834","CVE-2026-25835"],"references":[{"type":"ADVISORY"},{"type":"REPORT","url":"https://bugzilla.suse.com/1231708"},{"type":"REPORT","url":"https://bugzilla.suse.com/1240051"},{"type":"REPORT","url":"https://bugzilla.suse.com/1240052"},{"type":"REPORT","url":"https://bugzilla.suse.com/1245808"},{"type":"REPORT","url":"https://bugzilla.suse.com/1245809"},{"type":"REPORT","url":"https://bugzilla.suse.com/1245810"},{"type":"REPORT","url":"https://bugzilla.suse.com/1245811"},{"type":"REPORT","url":"https://bugzilla.suse.com/1246783"},{"type":"REPORT","url":"https://bugzilla.suse.com/1246784"},{"type":"REPORT","url":"https://bugzilla.suse.com/1246973"},{"type":"REPORT","url":"https://bugzilla.suse.com/1252341"},{"type":"REPORT","url":"https://bugzilla.suse.com/1252454"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-49195"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-27809"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-27810"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-47917"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-48965"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-49087"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-49600"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-49601"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-52496"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-52497"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-54764"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-59438"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-25833"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-25834"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-25835"}],"affected":[{"package":{"name":"mbedtls","ecosystem":"openSUSE:Leap 16.0","purl":"pkg:rpm/opensuse/mbedtls&distro=openSUSE%20Leap%2016.0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.6.6-bp160.1.1"}]}],"ecosystem_specific":{"binaries":[{"libp256m":"3.6.6-bp160.1.1","libeverest-x86-64-v3":"3.6.6-bp160.1.1","mbedtls-devel":"3.6.6-bp160.1.1","libmbedtls21":"3.6.6-bp160.1.1","libp256m-x86-64-v3":"3.6.6-bp160.1.1","libeverest":"3.6.6-bp160.1.1","libmbedcrypto16-x86-64-v3":"3.6.6-bp160.1.1","libmbedtls21-x86-64-v3":"3.6.6-bp160.1.1","libmbedx509-7-x86-64-v3":"3.6.6-bp160.1.1","libmbedcrypto16":"3.6.6-bp160.1.1","libmbedx509-7":"3.6.6-bp160.1.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2026:21144-1.json"}}],"schema_version":"1.7.5"}