Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-67c4-7f3g-r556

Опубликовано: 21 дек. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 4.6

Описание

An Observable Timing Discrepancy, Covert Timing Channel vulnerability in Silabs GSDK on ARM potentially allows Padding Oracle Crypto Attack on CBC PKCS7.This issue affects GSDK: through 4.4.0.

An Observable Timing Discrepancy, Covert Timing Channel vulnerability in Silabs GSDK on ARM potentially allows Padding Oracle Crypto Attack on CBC PKCS7.This issue affects GSDK: through 4.4.0.

EPSS

Процентиль: 30%
0.00107
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-203
CWE-208

Связанные уязвимости

CVSS3: 4.6
nvd
около 2 лет назад

An Observable Timing Discrepancy, Covert Timing Channel vulnerability in Silabs GSDK on ARM potentially allows Padding Oracle Crypto Attack on CBC PKCS7.This issue affects GSDK: through 4.4.0.

EPSS

Процентиль: 30%
0.00107
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-203
CWE-208