Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7p98-xcgc-gwhj

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Bleichenbacher's attack on PKCS #1 v1.5 padding for RSA in STM32 cryptographic firmware library software expansion for STM32Cube (UM1924). The vulnerability can allow one to use Bleichenbacher's oracle attack to decrypt an encrypted ciphertext by making successive queries to the server using the vulnerable library, resulting in remote information disclosure.

Bleichenbacher's attack on PKCS #1 v1.5 padding for RSA in STM32 cryptographic firmware library software expansion for STM32Cube (UM1924). The vulnerability can allow one to use Bleichenbacher's oracle attack to decrypt an encrypted ciphertext by making successive queries to the server using the vulnerable library, resulting in remote information disclosure.

EPSS

Процентиль: 67%
0.0054
Низкий

Дефекты

CWE-326

Связанные уязвимости

CVSS3: 5.9
nvd
около 5 лет назад

Bleichenbacher's attack on PKCS #1 v1.5 padding for RSA in STM32 cryptographic firmware library software expansion for STM32Cube (UM1924). The vulnerability can allow one to use Bleichenbacher's oracle attack to decrypt an encrypted ciphertext by making successive queries to the server using the vulnerable library, resulting in remote information disclosure.

EPSS

Процентиль: 67%
0.0054
Низкий

Дефекты

CWE-326