Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Zhenzhi Lai

Pesquisador deUniversity of Melbourne, Max Planck Institute for Security and Privacy
#44591de 53,635
5.9CVSS total
Vulnerabilidades · 1
PT-2025-29131
5.9
2025-07-10
Liboqs · Liboqs · CVE-2025-52473
Name of the Vulnerable Software and Affected Versions: liboqs versions prior to 0.14.0 Description: liboqs is a C-language cryptographic library providing post-quantum cryptography algorithm implementations. Secret-dependent branches were identified in the HQC key encapsulation mechanism reference implementation when compiled with Clang at optimization levels above -O0. A proof-of-concept local attack exploits this secret-dependent information to recover the entire secret key. Recommendations: Update to version 0.14.0 or later.