CVE-2025-49087: Medium severity Mbed TLS Mbed TLS vulnerability
Published Jul 20, 2025
·Updated
In Mbed TLS 3.6.1 through 3.6.3 before 3.6.4, a timing discrepancy in block cipher padding removal allows an attacker to recover the plaintext when PKCS#7 padding mode is used.
Affected Software
2 affected components
Mbed TLS Mbed TLS>=3.6.1<=3.6.3
TrustedFirmware Mbed Tls>=3.6.1<3.6.4
Event History
Jul 20, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-49087?
The severity of CVE-2025-49087 is considered high due to the potential for plaintext recovery through timing discrepancies.
2
How do I fix CVE-2025-49087?
To fix CVE-2025-49087, you should upgrade Mbed TLS to version 3.6.4 or later.
3
Which versions of Mbed TLS are affected by CVE-2025-49087?
Mbed TLS versions 3.6.1 to 3.6.3 are affected by CVE-2025-49087.
4
Who is impacted by CVE-2025-49087?
Any application using Mbed TLS versions 3.6.1 through 3.6.3 with PKCS#7 padding mode is impacted by CVE-2025-49087.
5
What type of vulnerability is CVE-2025-49087?
CVE-2025-49087 is a timing attack vulnerability related to block cipher padding removal.