Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-42023

Опубликовано: 14 дек. 2021
Источник: nvd
CVSS3: 6.5
CVSS2: 2.1
EPSS Низкий

Описание

A vulnerability has been identified in ModelSim Simulation (All versions), Questa Simulation (All versions). The RSA white-box implementation in affected applications insufficiently protects the built-in private keys that are required to decrypt electronic intellectual property (IP) data in accordance with the IEEE 1735 recommended practice. This could allow a sophisticated attacker to discover the keys, bypassing the protection intended by the IEEE 1735 recommended practice.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:siemens:modelsim:*:*:*:*:*:*:*:*
cpe:2.3:a:siemens:questa:*:*:*:*:*:*:*:*

EPSS

Процентиль: 35%
0.00142
Низкий

6.5 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-522

Связанные уязвимости

github
около 4 лет назад

A vulnerability has been identified in ModelSim Simulation (All versions), Questa Simulation (All versions). The RSA white-box implementation in affected applications insufficiently protects the built-in private keys that are required to decrypt electronic intellectual property (IP) data in accordance with the IEEE 1735 recommended practice. This could allow a sophisticated attacker to discover the keys, bypassing the protection intended by the IEEE 1735 recommended practice.

EPSS

Процентиль: 35%
0.00142
Низкий

6.5 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-522