CRYSTALS-DILITHIUM (in Post-Quantum Cryptography Selected Algorithms 2022) in PQClean d03da30 may allow universal forgeries of digital signatures via a template side-channel attack because of intermediate data leakage of one vector.
References
Link | Resource |
---|---|
https://github.com/PQClean/PQClean/tree/d03da3053491e767ef842deaef43fc5bdb6bc911 | Third Party Advisory |
https://eprint.iacr.org/2023/050 | Third Party Advisory |
https://csrc.nist.gov/Projects/post-quantum-cryptography/selected-algorithms-2022 | Third Party Advisory US Government Resource |
Configurations
Information
Published : 2023-01-20 13:15
Updated : 2023-02-03 07:00
NVD link : CVE-2023-24025
Mitre link : CVE-2023-24025
JSON object : View
CWE
CWE-347
Improper Verification of Cryptographic Signature
Products Affected
pqclean_project
- pqclean