Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p9w8-99j3-73rv

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

RSA BSAFE Crypto-J versions prior to 6.2.5 are vulnerable to Information Exposure Through Timing Discrepancy vulnerabilities during ECDSA key generation. A malicious remote attacker could potentially exploit those vulnerabilities to recover ECDSA keys.

RSA BSAFE Crypto-J versions prior to 6.2.5 are vulnerable to Information Exposure Through Timing Discrepancy vulnerabilities during ECDSA key generation. A malicious remote attacker could potentially exploit those vulnerabilities to recover ECDSA keys.

EPSS

Процентиль: 79%
0.01239
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-203

Связанные уязвимости

CVSS3: 6.5
nvd
больше 6 лет назад

RSA BSAFE Crypto-J versions prior to 6.2.5 are vulnerable to Information Exposure Through Timing Discrepancy vulnerabilities during ECDSA key generation. A malicious remote attacker could potentially exploit those vulnerabilities to recover ECDSA keys.

EPSS

Процентиль: 79%
0.01239
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-203