Client Impersonation Vulnerability in Mbed TLS by ARM
CVE-2026-34873
9.1CRITICAL
What is CVE-2026-34873?
A vulnerability in Mbed TLS affecting versions 3.5.0 to 4.0.0 allows an attacker to impersonate a client when resuming a TLS 1.3 session. This can lead to unauthorized access to sensitive information. Users are advised to update to the latest version of Mbed TLS to mitigate this risk. Detailed information can be found in the official security advisory.