PT-2022-7383 · Dell · Dell Bsafe Crypto-C Micro Edition+1

Published

2022-09-11

·

Updated

2024-05-22

·

CVE-2020-35165

CVSS v3.1

5.1

Medium

VectorAV:L/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Dell BSAFE Crypto-C Micro Edition versions before 4.1.5 Dell BSAFE Micro Edition Suite versions before 4.6
Description The issue is related to an Observable Timing Discrepancy, which can be exploited to reveal protected information. This is due to the manipulation of an unknown input, leading to a timing discrepancy vulnerability.
Recommendations For Dell BSAFE Crypto-C Micro Edition versions before 4.1.5, update to version 4.1.5 or later. For Dell BSAFE Micro Edition Suite versions before 4.6, update to version 4.6 or later.

Fix

Side Channel Attack

Weakness Enumeration

Related Identifiers

BDU:2024-04646
CVE-2020-35165

Affected Products

Dell Bsafe Crypto-C Micro Edition
Dell Bsafe Micro Edition Suite