Lucene search

K
osvGoogleOSV:DLA-262-1
HistoryJun 30, 2015 - 12:00 a.m.

libcrypto++ - security update

2015-06-3000:00:00
Google
osv.dev
17

EPSS

0.004

Percentile

72.4%

Evgeny Sidorov discovered that libcrypto++, a general purpose C++
cryptographic library, did not properly implement blinding to mask
private key operations for the Rabin-Williams digital signature
algorithm. This could allow remote attackers to mount a timing attack
and retrieve the user’s private key.