CVE-2025-11935: Forward Secrecy Violation in WolfSSL TLS 1.3
Forward Secrecy Violation in WolfSSL TLS 1.3
Other sources
With TLS 1.3 pre-shared key (PSK) a malicious or faulty server could ignore the request for PFS (perfect forward secrecy) and the client would continue on with the connection using PSK without PFS. This happened when a server responded to a ClientHello containing pskdheke without a keyshare extension. The re-use of an authenticated PSK connection that on the clients side unexpectedly did not have PFS, reduces the security of the connection.
— MITRE
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2025-11935?
The severity of CVE-2025-11935 is considered high due to potential exposure to man-in-the-middle attacks.
How do I fix CVE-2025-11935?
To fix CVE-2025-11935, update to the latest version of WolfSSL where the vulnerability has been addressed.
What type of vulnerability is CVE-2025-11935?
CVE-2025-11935 is a cryptographic vulnerability related to the handling of perfect forward secrecy in TLS 1.3.
What does CVE-2025-11935 affect?
CVE-2025-11935 affects applications using WolfSSL for TLS 1.3 connections.
Who is affected by CVE-2025-11935?
Developers and organizations using susceptible versions of WolfSSL should be concerned about CVE-2025-11935.