PT-2017-16881 · Wolfssl · Wolfssl

Peng Li

+1

·

Published

2017-02-23

·

Updated

2019-03-13

·

CVE-2017-6076

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions wolfSSL versions prior to 3.10.2
Description The issue makes it easier for a malicious user with access to view cache on a machine to extract RSA key information due to the function fp mul comba.
Recommendations For versions prior to 3.10.2, update to version 3.10.2 or later to resolve the issue.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-6076

Affected Products

Wolfssl