← Back to CVE List

CVE-2023-26084

Published: 2023-03-15T14:15Z
Last Modified: 2025-02-27T22:15Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
The armv8_dec_aes_gcm_full() API of Arm AArch64cryptolib before 86065c6 fails to the verify the authentication tag of AES-GCM protected data, leading to a man-in-the-middle attack. This occurs because of an improperly initialized variable. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt