Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-97gp-82pc-qc6x

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

wolfSSL prior to version 3.12.2 provides a weak Bleichenbacher oracle when any TLS cipher suite using RSA key exchange is negotiated. An attacker can recover the private key from a vulnerable wolfSSL application. This vulnerability is referred to as "ROBOT."

wolfSSL prior to version 3.12.2 provides a weak Bleichenbacher oracle when any TLS cipher suite using RSA key exchange is negotiated. An attacker can recover the private key from a vulnerable wolfSSL application. This vulnerability is referred to as "ROBOT."

EPSS

Процентиль: 99%
0.70023
Высокий

5.9 Medium

CVSS3

Дефекты

CWE-203

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 8 лет назад

wolfSSL prior to version 3.12.2 provides a weak Bleichenbacher oracle when any TLS cipher suite using RSA key exchange is negotiated. An attacker can recover the private key from a vulnerable wolfSSL application. This vulnerability is referred to as "ROBOT."

CVSS3: 7.5
nvd
около 8 лет назад

wolfSSL prior to version 3.12.2 provides a weak Bleichenbacher oracle when any TLS cipher suite using RSA key exchange is negotiated. An attacker can recover the private key from a vulnerable wolfSSL application. This vulnerability is referred to as "ROBOT."

CVSS3: 7.5
debian
около 8 лет назад

wolfSSL prior to version 3.12.2 provides a weak Bleichenbacher oracle ...

EPSS

Процентиль: 99%
0.70023
Высокий

5.9 Medium

CVSS3

Дефекты

CWE-203