The RSA-CRT implementation in the Cavium Software Development Kit (SDK) 2.x, when used on OCTEON II CN6xxx Hardware on Linux to support TLS with Perfect Forward Secrecy (PFS), makes it easier for remote attackers to obtain private RSA keys by conducting a Lenstra side-channel attack.
References
Link | Resource |
---|---|
https://people.redhat.com/~fweimer/rsa-crt-leaks.pdf | Technical Description Third Party Advisory |
https://support.f5.com/kb/en-us/solutions/public/k/91/sol91245485.html | Third Party Advisory |
http://fortiguard.com/advisory/rsa-crt-key-leak-under-certain-conditions | Broken Link |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
|
Information
Published : 2016-07-26 10:59
Updated : 2020-11-10 06:04
NVD link : CVE-2015-5738
Mitre link : CVE-2015-5738
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
marvell
- software_development_kit
- octeon_ii_cn6020
- octeon_ii_cn6000
- octeon_ii_cn6010
f5
- traffix_sdc