cve/2024/CVE-2024-0914.md
2024-05-25 21:48:12 +02:00

1.5 KiB

CVE-2024-0914

Description

A timing side-channel vulnerability has been discovered in the opencryptoki package while processing RSA PKCS#1 v1.5 padded ciphertexts. This flaw could potentially enable unauthorized RSA ciphertext decryption or signing, even without access to the corresponding private key.

POC

Reference

No PoCs from references.

Github