Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2013-5915

Опубликовано: 04 окт. 2013
Источник: debian
EPSS Низкий

Описание

The RSA-CRT implementation in PolarSSL before 1.2.9 does not properly perform Montgomery multiplication, which might allow remote attackers to conduct a timing side-channel attack and retrieve RSA private keys.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
polarsslfixed1.3.1-1package

Примечания

  • https://polarssl.org/tech-updates/security-advisories/polarssl-security-advisory-2013-05

EPSS

Процентиль: 71%
0.00688
Низкий

Связанные уязвимости

ubuntu
больше 11 лет назад

The RSA-CRT implementation in PolarSSL before 1.2.9 does not properly perform Montgomery multiplication, which might allow remote attackers to conduct a timing side-channel attack and retrieve RSA private keys.

nvd
больше 11 лет назад

The RSA-CRT implementation in PolarSSL before 1.2.9 does not properly perform Montgomery multiplication, which might allow remote attackers to conduct a timing side-channel attack and retrieve RSA private keys.

github
около 3 лет назад

The RSA-CRT implementation in PolarSSL before 1.2.9 does not properly perform Montgomery multiplication, which might allow remote attackers to conduct a timing side-channel attack and retrieve RSA private keys.

fstec
больше 11 лет назад

Уязвимости операционной системы Gentoo Linux, позволяющие удаленному злоумышленнику нарушить доступность защищаемой информации

EPSS

Процентиль: 71%
0.00688
Низкий