Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x8jw-8x39-62fp

Опубликовано: 15 дек. 2021
Источник: github
Github: Не прошло ревью

Описание

A vulnerability has been identified in ModelSim Simulation (All versions), Questa Simulation (All versions). The RSA white-box implementation in affected applications insufficiently protects the built-in private keys that are required to decrypt electronic intellectual property (IP) data in accordance with the IEEE 1735 recommended practice. This could allow a sophisticated attacker to discover the keys, bypassing the protection intended by the IEEE 1735 recommended practice.

A vulnerability has been identified in ModelSim Simulation (All versions), Questa Simulation (All versions). The RSA white-box implementation in affected applications insufficiently protects the built-in private keys that are required to decrypt electronic intellectual property (IP) data in accordance with the IEEE 1735 recommended practice. This could allow a sophisticated attacker to discover the keys, bypassing the protection intended by the IEEE 1735 recommended practice.

EPSS

Процентиль: 35%
0.00142
Низкий

Дефекты

CWE-522

Связанные уязвимости

CVSS3: 6.5
nvd
около 4 лет назад

A vulnerability has been identified in ModelSim Simulation (All versions), Questa Simulation (All versions). The RSA white-box implementation in affected applications insufficiently protects the built-in private keys that are required to decrypt electronic intellectual property (IP) data in accordance with the IEEE 1735 recommended practice. This could allow a sophisticated attacker to discover the keys, bypassing the protection intended by the IEEE 1735 recommended practice.

EPSS

Процентиль: 35%
0.00142
Низкий

Дефекты

CWE-522