Back

MEDIUM

Cesanta Mongoose GCM Authentication Tag tls_aes128.c mg_aes_gcm_decrypt signature verification

Published Apr 25, 2026

Description

A security vulnerability has been detected in Cesanta Mongoose up to 7.20. This issue affects the function mg_aes_gcm_decrypt of the file /src/tls_aes128.c of the component GCM Authentication Tag Handler. Such manipulation leads to improper verification of cryptographic signature. The attack may be performed from remote. A high complexity level is associated with this attack. The exploitability is assessed as difficult. The exploit has been disclosed publicly and may be used. Upgrading to version 7.21 is capable of addressing this issue. It is advisable to upgrade the affected component. VulDB has contacted the vendor early and they confirmed quickly, that this issue got fixed already.

Affected products

Remediation

Red Hat statement

Red Hat rates this vulnerability as Low impact with a CVSS score of 3.7. No Red Hat supported products ship the Cesanta Mongoose library, and the only affected packages are community ones. The vulnerability is specific to Mongoose's built-in TLS implementation, commonly used in embedded and IoT deployments whilst on Linux distributions applications tend to build against OpenSSL or mbedTLS which are not affected. Even where built-in TLS is in use, an attacker would need an active man-in-the-middle position on the network and prior knowledge of the plaintext layout at specific byte offsets to tamper with data in transit. The impact is limited to integrity within a single TLS session, with no effect on confidentiality or availability.

Red Hat mitigation

If you are compiling Mongoose from source, build it against OpenSSL or mbedTLS instead of the built-in TLS stack by setting MG_TLS=MG_TLS_OPENSSL or MG_TLS=MG_TLS_MBED. For applications where switching TLS backends is not an option, restricting network access to the Mongoose service reduces the risk of a man-in-the-middle attack reaching the vulnerable code path.

Weaknesses (2)

References (10)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner VulDB
Published Apr 25, 2026
Updated Apr 27, 2026
Reserved Apr 24, 2026

CISA Vulnrichment

Updated Apr 27, 2026

NVD

Status Analyzed
Modified Jun 17, 2026

Red Hat

Severity Low
Public date Apr 25, 2026
Bugzilla 2461830

ENISA EUVD

Assigner VulDB
Published Apr 25, 2026
Updated Apr 27, 2026

GitHub

No data