Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Adrian Cinal

#35707of 53,632
7.5Total CVSS
Vulnerabilities · 1
PT-2025-47821
7.5
2025-11-21
Espressif · Esp32 · CVE-2025-12888
**Name of the Vulnerable Software and Affected Versions** X25519 (affected versions not specified) **Description** A flaw exists in X25519 constant-time cryptographic implementations due to timing side channels. These side channels are introduced by compiler optimizations and CPU architecture limitations, particularly affecting Xtensa-based ESP32 chips. When targeting Xtensa, utilizing the low memory implementations of X25519 is recommended. The low memory implementations are now the default for Xtensa. **Recommendations** For Xtensa-based ESP32 chips, use the low memory implementations of X25519.