CVE-2026-25834

unknown
Published — · Modified —
CVSS v3
—
CVSS v4 NEW
—
not yet in upstream
VIR risk
—

Description

Mbed TLS v3.3.0 up to 3.6.5 and 4.0.0 allows Algorithm Downgrade.

Predictions

Exploit likelihood
20%
Patch ETA
—

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

Mitigation details

Source: Debian Security Tracker · View original ↗ · DFSG

CVE-2026-25834 NameCVE-2026-25834 DescriptionMbed TLS v3.3.0 up to 3.6.5 and 4.0.0 allows Algorithm Downgrade. SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) Debian Bugs1133841 Vulnerable and fixed packages The table below lists information on source packages. Source…

CVE-2026-25834

NameCVE-2026-25834
DescriptionMbed TLS v3.3.0 up to 3.6.5 and 4.0.0 allows Algorithm Downgrade.
SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
Debian Bugs1133841

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
mbedtls (PTS)bullseye2.16.9-0.1fixed
bullseye (security)2.16.9-0.1+deb11u4fixed
bookworm2.28.3-1fixed
trixie3.6.5-0.1~deb13u1vulnerable
forky, sid3.6.6-0.1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
mbedtlssourcebullseye(not affected)
mbedtlssourcebookworm(not affected)
mbedtlssource(unstable)3.6.6-0.11133841

Notes

[trixie] - mbedtls <no-dsa> (Minor issue)
[bookworm] - mbedtls <not-affected> (Vulnerable code introduced later)
[bullseye] - mbedtls <not-affected> (Vulnerable code introduced later)
https://mbed-tls.readthedocs.io/en/latest/security-advisories/mbedtls-security-advisory-2026-03-sigalg-injection/
Introduced by: https://github.com/Mbed-TLS/mbedtls/commit/693a47ab1d076164baf0e5baff645b0e0d4d966b (mbedtls-3.3.0)
Fixed by: https://github.com/Mbed-TLS/mbedtls/commit/0165a8d7637a458f49cfe01be1f21aa0f91143d7 (mbedtls-3.6.6)

Home - Debian Security - Source (Git)

Apply commands

text fix
Notes
[trixie] - mbedtls <no-dsa> (Minor issue)[bookworm] - mbedtls <not-affected> (Vulnerable code introduced later)[bullseye] - mbedtls <not-affected> (Vulnerable code introduced later)https://mbed-tls.readthedocs.io/en/latest/security-advisories/mbedtls-security-advisory-2026-03-sigalg-injection/Introduced by: https://github.com/Mbed-TLS/mbedtls/commit/693a47ab1d076164baf0e5baff645b0e0d4d966b (mbedtls-3.3.0)Fixed by: https://github.com/Mbed-TLS/mbedtls/commit/0165a8d7637a458f49cfe01be1f21aa0f91143d7 (mbedtls-3.6.6)

OS impact

OSVersionStatusFixed in
suse slesaffected
debian debianbookwormfixed0
debian debianbullseyefixed0
debian debianforkyfixed3.6.6-0.1
debian debiansidfixed3.6.6-0.1
debian debiantrixieaffected

References

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.