Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7mvj-5457-q9m3

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.2

Описание

In Botan 1.11.29 through 1.11.32, RSA decryption with certain padding options had a detectable timing channel which could given sufficient queries be used to recover plaintext, aka an "OAEP side channel" attack.

In Botan 1.11.29 through 1.11.32, RSA decryption with certain padding options had a detectable timing channel which could given sufficient queries be used to recover plaintext, aka an "OAEP side channel" attack.

EPSS

Процентиль: 34%
0.00136
Низкий

6.2 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 6.2
ubuntu
больше 9 лет назад

In Botan 1.11.29 through 1.11.32, RSA decryption with certain padding options had a detectable timing channel which could given sufficient queries be used to recover plaintext, aka an "OAEP side channel" attack.

CVSS3: 6.2
nvd
больше 9 лет назад

In Botan 1.11.29 through 1.11.32, RSA decryption with certain padding options had a detectable timing channel which could given sufficient queries be used to recover plaintext, aka an "OAEP side channel" attack.

CVSS3: 6.2
debian
больше 9 лет назад

In Botan 1.11.29 through 1.11.32, RSA decryption with certain padding ...

EPSS

Процентиль: 34%
0.00136
Низкий

6.2 Medium

CVSS3

Дефекты

CWE-200