Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x75h-jr86-mj5x

Опубликовано: 10 янв. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

** DISPUTED ** The AES instructions on the ARMv8 platform do not have an algorithm that is "intrinsically resistant" to side-channel attacks. NOTE: the vendor reportedly offers the position "while power side channel attacks ... are possible, they are not directly caused by or related to the Arm architecture."

** DISPUTED ** The AES instructions on the ARMv8 platform do not have an algorithm that is "intrinsically resistant" to side-channel attacks. NOTE: the vendor reportedly offers the position "while power side channel attacks ... are possible, they are not directly caused by or related to the Arm architecture."

EPSS

Процентиль: 58%
0.00372
Низкий

7.5 High

CVSS3

Дефекты

CWE-203

Связанные уязвимости

CVSS3: 7.5
nvd
около 3 лет назад

The AES instructions on the ARMv8 platform do not have an algorithm that is "intrinsically resistant" to side-channel attacks. NOTE: the vendor reportedly offers the position "while power side channel attacks ... are possible, they are not directly caused by or related to the Arm architecture."

EPSS

Процентиль: 58%
0.00372
Низкий

7.5 High

CVSS3

Дефекты

CWE-203