Beveiligingsadvies

CVE-2020-20949

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2021-01-20 15:42:18
Laatst bijgewerkt 2026-07-09 00:09:53
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

Bleichenbacher's attack on PKCS #1 v1.5 padding for RSA in STM32 cryptographic firmware library software expansion for STM32Cube (UM1924). The vulnerability can allow one to use Bleichenbacher's oracle attack to decrypt an encrypted ciphertext by making successive queries to the server using the vulnerable library, resulting in remote information disclosure.