Loading
An issue was discovered in Mbed TLS through 3.6.5 and 4.x through 4.0.0. There is a NULL pointer dereference in distinguished name parsing that allows an attacker to write to address 0.
Use CWE-476, Arm vendor hub and Mbed Tls product page to widen CVE-2026-34874 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-34877, CVE-2026-34875 and CVE-2026-34873 for nearby disclosures in the same product family.