CVE-2021-24119
- EPSS 0.26%
- Veröffentlicht 14.07.2021 13:15:08
- Zuletzt bearbeitet 21.11.2024 05:52:23
In Trusted Firmware Mbed TLS 2.24.0, a side-channel vulnerability in base64 PEM file decoding allows system-level (administrator) attackers to obtain information about secret RSA keys via a controlled-channel and side-channel attack on software runni...
CVE-2020-16150
- EPSS 0.09%
- Veröffentlicht 02.09.2020 16:15:12
- Zuletzt bearbeitet 21.11.2024 05:06:51
A Lucky 13 timing side channel in mbedtls_ssl_decrypt_buf in library/ssl_msg.c in Trusted Firmware Mbed TLS through 2.23.0 allows an attacker to recover secret key information. This affects CBC mode because of a computed time difference based on a pa...
CVE-2020-10932
- EPSS 0.03%
- Veröffentlicht 15.04.2020 14:15:20
- Zuletzt bearbeitet 21.11.2024 04:56:23
An issue was discovered in Arm Mbed TLS before 2.16.6 and 2.7.x before 2.7.15. An attacker that can get precise enough side-channel measurements can recover the long-term ECDSA private key by (1) reconstructing the projective coordinate of the result...
CVE-2020-10941
- EPSS 0.58%
- Veröffentlicht 24.03.2020 20:15:14
- Zuletzt bearbeitet 21.11.2024 04:56:25
Arm Mbed TLS before 2.16.5 allows attackers to obtain sensitive information (an RSA private key) by measuring cache usage during an import.
CVE-2019-18222
- EPSS 0.06%
- Veröffentlicht 23.01.2020 17:15:11
- Zuletzt bearbeitet 21.11.2024 04:32:52
The ECDSA signature implementation in ecdsa.c in Arm Mbed Crypto 2.1 and Mbed TLS through 2.19.1 does not reduce the blinded scalar before computing the inverse, which allows a local attacker to recover the private key via side-channel attacks.
CVE-2019-16910
- EPSS 0.91%
- Veröffentlicht 26.09.2019 13:15:10
- Zuletzt bearbeitet 21.11.2024 04:31:19
Arm Mbed TLS before 2.19.0 and Arm Mbed Crypto before 2.0.0, when deterministic ECDSA is enabled, use an RNG with insufficient entropy for blinding, which might allow an attacker to recover a private key via side-channel attacks if a victim signs the...
CVE-2018-19608
- EPSS 0.25%
- Veröffentlicht 05.12.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 03:58:16
Arm Mbed TLS before 2.14.1, before 2.7.8, and before 2.1.17 allows a local unprivileged attacker to recover the plaintext of RSA decryption, which is used in RSA-without-(EC)DH(E) cipher suites.
CVE-2018-0498
- EPSS 0.21%
- Veröffentlicht 28.07.2018 17:29:00
- Zuletzt bearbeitet 21.11.2024 03:38:21
ARM mbed TLS before 2.12.0, before 2.7.5, and before 2.1.14 allows local users to achieve partial plaintext recovery (for a CBC based ciphersuite) via a cache-based side-channel attack.
CVE-2018-0497
- EPSS 0.62%
- Veröffentlicht 28.07.2018 17:29:00
- Zuletzt bearbeitet 21.11.2024 03:38:21
ARM mbed TLS before 2.12.0, before 2.7.5, and before 2.1.14 allows remote attackers to achieve partial plaintext recovery (for a CBC based ciphersuite) via a timing-based side-channel attack. This vulnerability exists because of an incorrect fix (wit...
CVE-2018-1000520
- EPSS 0.1%
- Veröffentlicht 26.06.2018 16:29:01
- Zuletzt bearbeitet 21.11.2024 03:40:06
ARM mbedTLS version 2.7.0 and earlier contains a Ciphersuite Allows Incorrectly Signed Certificates vulnerability in mbedtls_ssl_get_verify_result() that can result in ECDSA-signed certificates are accepted, when only RSA-signed ones should be.. This...