Back to Database
Status published
Low
CVE-2025-11932
Timing Side-Channel in PSK Binder Verification
Vulnerability Description
The server previously verified the TLS 1.3 PSK binder using a non-constant time method which could potentially leak information about the PSK binder
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-11932
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Luigino Camastra from Aisle Research
References
More from wolfSSL
View All →CVE-2025-7396
Curve25519 Blinding
Medium
5.6
CVE-2025-7395
Domain Name Validation Bypass with Apple Native Certificate Validation
Critical
9.2
CVE-2025-7394
In the OpenSSL compatibility layer implementation, the function RAND_poll() was...
High
7
CVE-2025-15382
Client SCP Request Triggers Buffer Overread by 1 Byte
Medium
5.1
CVE-2025-15346
wolfSSL Python library `CERT_REQUIRED` mode fails to enforce client certificate requirement
Critical
9.3
Affected Vendor
wolfSSL
View all reports →Affected Software
wolfSSL
Vulnerable Versions:
0
Timeline
Official Publish:
November 21st, 2025
Last Modified:
December 8th, 2025
Added to House:
July 22nd, 2026