Beveiligingsadvies

CVE-2024-28285

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-05-13 19:07:16
Laatst bijgewerkt 2025-02-13 15:47:36
Toegewezen door mitre
CVSS-score 9.8
Status PUBLISHED

Beschrijving

A Fault Injection vulnerability in the SymmetricDecrypt function in cryptopp/elgamal.h of Cryptopp Crypto++ 8.9, allows an attacker to co-reside in the same system with a victim process to disclose information and escalate privileges.