CVE-2021-43666 | ARM mbed TLS up to 3.0.0 Password Length mbedtls_pkcs12_derivation denial of service (Issue 5136 / Nessus ID 240979)
A vulnerability was found in ARM mbed TLS up to 3.0.0 and classified as problematic. Affected by this issue is the function mbedtls_pkcs12_derivation of the component Password Length Handler. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2021-43666. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.