Lucene search

K
osvGoogleOSV:CVE-2020-36423
HistoryJul 19, 2021 - 5:15 p.m.

CVE-2020-36423

2021-07-1917:15:11
Google
osv.dev
6
arm mbed tls
lucky 13
plaintext recovery
hardware accelerator
security vulnerability

AI Score

6.8

Confidence

Low

EPSS

0.003

Percentile

69.9%

An issue was discovered in Arm Mbed TLS before 2.23.0. A remote attacker can recover plaintext because a certain Lucky 13 countermeasure doesn’t properly consider the case of a hardware accelerator.

AI Score

6.8

Confidence

Low

EPSS

0.003

Percentile

69.9%