mirror of
https://github.com/espressif/mbedtls.git
synced 2026-09-29 21:57:22 +00:00
change(mbedtls): adds CVE-2025-66442 to exclude list.
The CVE is applicable with Clang using LLVM's select-optimize feature. ESP-IDF uses GCC as default compiler and sets -Os as the default optimisation flag
This commit is contained in:
@@ -15,3 +15,5 @@ cve-exclude-list:
|
|||||||
reason: Fixed in 3.6.4
|
reason: Fixed in 3.6.4
|
||||||
- cve: CVE-2025-27810
|
- cve: CVE-2025-27810
|
||||||
reason: Fixed in 3.6.3
|
reason: Fixed in 3.6.3
|
||||||
|
- cve: CVE-2025-66442
|
||||||
|
reason: Applicable only with Clang with select-optimize feature. ESP-IDF uses gcc as the default compiler and uses -Os as the default optimisation flag
|
||||||
|
|||||||
Reference in New Issue
Block a user