Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-1543

Опубликовано: 29 авг. 2024
Источник: nvd
CVSS3: 4.1
CVSS3: 5.5
EPSS Низкий

Описание

The side-channel protected T-Table implementation in wolfSSL up to version 5.6.5 protects against a side-channel attacker with cache-line resolution. In a controlled environment such as Intel SGX, an attacker can gain a per instruction sub-cache-line resolution allowing them to break the cache-line-level protection. For details on the attack refer to: https://doi.org/10.46586/tches.v2024.i1.457-500

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:wolfssl:wolfssl:*:*:*:*:*:*:*:*
Версия до 5.6.6 (исключая)

EPSS

Процентиль: 12%
0.00039
Низкий

4.1 Medium

CVSS3

5.5 Medium

CVSS3

Дефекты

CWE-208
CWE-203

Связанные уязвимости

CVSS3: 4.1
ubuntu
больше 1 года назад

The side-channel protected T-Table implementation in wolfSSL up to version 5.6.5 protects against a side-channel attacker with cache-line resolution. In a controlled environment such as Intel SGX, an attacker can gain a per instruction sub-cache-line resolution allowing them to break the cache-line-level protection. For details on the attack refer to: https://doi.org/10.46586/tches.v2024.i1.457-500

CVSS3: 5.5
msrc
около 1 года назад

Описание отсутствует

CVSS3: 4.1
debian
больше 1 года назад

The side-channel protected T-Table implementation in wolfSSL up to ver ...

CVSS3: 4.1
github
больше 1 года назад

The side-channel protected T-Table implementation in wolfSSL up to version 5.6.5 protects against a side-channel attacker with cache-line resolution. In a controlled environment such as Intel SGX, an attacker can gain a per instruction sub-cache-line resolution allowing them to break the cache-line-level protection. For details on the attack refer to: https://doi.org/10.46586/tches.v2024.i1.457-500

EPSS

Процентиль: 12%
0.00039
Низкий

4.1 Medium

CVSS3

5.5 Medium

CVSS3

Дефекты

CWE-208
CWE-203