PolarSSL is a compact cryptographic library embedded in embedded systems, IoT devices, and constrained environments where memory and computational resources are limited. Its vulnerability profile centers on a single product and recurs through weakness classes including buffer-boundary violations, input-validation gaps, cryptographic strength limitations, and weak random-number generation—flaws that reflect the parsing, protocol-state, and cryptographic-primitive demands of a lightweight TLS implementation. A meaningful share of its disclosures reach serious severity; defenders should inventory products that bundle this library and prioritize remediation of cryptographic weaknesses in internet-facing or authentication-critical deployments. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Polarssl over time
Signals from CVEs in this vendor scope (15 CVEs).
15 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
The TLS protocol 1.1 and 1.2 and the DTLS protocol 1.0 and 1.2, as used in OpenSSL, OpenJDK, PolarSSL, and other products, do not properly consider timing side-channel attacks on a | Feb 8, 2013 | 2.6 | 36 | NO | NO |
CVE-2011-4574CRITICAL PolarSSL versions prior to v1.1 use the HAVEGE random number generation algorithm. At its heart, this uses timing information based on the processor's high resolution timer (the RD | Oct 27, 2021 | 9.8 | 30 | NO | NO |
CVE-2012-2130HIGH A Security Bypass vulnerability exists in PolarSSL 0.99pre4 through 1.1.1 due to a weak encryption error when generating Diffie-Hellman values and RSA keys. | Dec 6, 2019 | 7.4 | 25 | NO | NO |
CVE-2015-8036MEDIUM Heap-based buffer overflow in ARM mbed TLS (formerly PolarSSL) 1.3.x before 1.3.14 and 2.x before 2.1.2 allows remote SSL servers to cause a denial of service (client crash) and po | Nov 2, 2015 | 6.8 | 24 | NO | NO |
CVE-2013-5914MEDIUM Buffer overflow in the ssl_read_record function in ssl_tls.c in PolarSSL before 1.1.8, when using TLS 1.1, might allow remote attackers to execute arbitrary code via a long packet. | Oct 26, 2013 | 6.8 | 24 | NO | NO |
CVE-2014-9744HIGH Memory leak in PolarSSL before 1.3.9 allows remote attackers to cause a denial of service (memory consumption) via a large number of ClientHello messages. NOTE: this identifier wa | Aug 24, 2015 | 7.8 | 20 | NO | NO |
CVE-2014-8628HIGH Memory leak in PolarSSL before 1.2.12 and 1.3.x before 1.3.9 allows remote attackers to cause a denial of service (memory consumption) via a large number of crafted X.509 certifica | Aug 24, 2015 | 7.8 | 20 | NO | NO |
CVE-2015-1182HIGH The asn1_get_sequence_of function in library/asn1parse.c in PolarSSL 1.0 through 1.2.12 and 1.3.x through 1.3.9 does not properly initialize a pointer in the asn1_sequence linked l | Jan 27, 2015 | 7.5 | 20 | NO | NO |
CVE-2014-4911MEDIUM The ssl_decrypt_buf function in library/ssl_tls.c in PolarSSL before 1.2.11 and 1.3.x before 1.3.8 allows remote attackers to cause a denial of service (crash) via vectors related | Jul 22, 2014 | 5.0 | 20 | NO | NO |
CVE-2015-5291MEDIUM Heap-based buffer overflow in PolarSSL 1.x before 1.2.17 and ARM mbed TLS (formerly PolarSSL) 1.3.x before 1.3.14 and 2.x before 2.1.2 allows remote SSL servers to cause a denial o | Nov 2, 2015 | 6.8 | 19 | NO | NO |
Signals from CVEs in this vendor scope (15 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Polarssl.
Media articles that mention a CVE ID that affects a product developed by Polarssl — matched by CVE ID, not by vendor name.