Beveiligingsadvies

CVE-2016-8871

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2016-10-28 15:00:00
Laatst bijgewerkt 2024-08-06 02:35:02
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

In Botan 1.11.29 through 1.11.32, RSA decryption with certain padding options had a detectable timing channel which could given sufficient queries be used to recover plaintext, aka an "OAEP side channel" attack.