The C software implementation of ECC in wolfSSL (formerly CyaSSL) before 3.9.10 makes it easier for local users to discover RSA keys by leveraging cache-bank hit differences.
References
Configurations
Information
Published : 2016-12-13 08:59
Updated : 2016-12-23 18:59
NVD link : CVE-2016-7438
Mitre link : CVE-2016-7438
JSON object : View
CWE
CWE-310
Cryptographic Issues
Products Affected
wolfssl
- wolfssl