CVE-2018-0735Medium· 5.9▾ SunlitThe OpenSSL ECDSA signature algorithm has been shown to be vulnerable to a timing side channel attack. An attacker could use variations in the signing algorithm to recover the private key. Fixed in OpenSSL 1.1.0j (Affected 1.1.0-1.1.0i).…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 32.5 · likelihood 0.9 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
4.7%
The OpenSSL ECDSA signature algorithm has been shown to be vulnerable to a timing side channel attack. An attacker could use variations in the signing algorithm to recover the private key. Fixed in OpenSSL 1.1.0j (Affected 1.1.0-1.1.0i). Fixed in OpenSSL 1.1.1a (Affected 1.1.1).
openssl >= 1.1.0, <= 1.1.0iopenssl = 1.1.1ubuntu_linux = 14.04ubuntu_linux = 16.04ubuntu_linux = 18.04ubuntu_linux = 18.10debian_linux = 8.0debian_linux = 9.0node.js >= 10.0.0, < 10.12.0node.js >= 11.0.0, < 11.3.0node.js = 10.13.0cn1610_firmwarecloud_backupelement_softwareoncommand_unified_manageroncommand_unified_manager >= 9.4santricity_smi-s_providersmi-s_providersnapdrivesteelstoreapi_gateway = 11.1.2.4.0application_server = 0.9.8application_server = 1.0.0application_server = 1.0.1enterprise_manager_base_platform = 12.1.0.5.0enterprise_manager_base_platform = 13.2.0.0.0enterprise_manager_base_platform = 13.3.0.0.0enterprise_manager_ops_center = 12.3.3mysql <= 5.6.42mysql >= 5.7.0, <= 5.7.24mysql >= 8.0.0, <= 8.0.13peoplesoft_enterprise_peopletools = 8.55peoplesoft_enterprise_peopletools = 8.56peoplesoft_enterprise_peopletools = 8.57primavera_p6_enterprise_project_portfolio_management >= 17.7, <= 17.12primavera_p6_enterprise_project_portfolio_management = 8.4primavera_p6_enterprise_project_portfolio_management = 15.1primavera_p6_enterprise_project_portfolio_management = 15.2primavera_p6_enterprise_project_portfolio_management = 16.1primavera_p6_enterprise_project_portfolio_management = 16.2primavera_p6_enterprise_project_portfolio_management = 18.8secure_global_desktop = 5.4tuxedo = 12.1.1.0.0vm_virtualbox < 6.0.0vm_virtualbox >= 5.0.0, < 5.2.24Upgrade past the affected range:
node.js 11.3.0vm_virtualbox 5.2.24Connected by shared product, vendor, weakness, or advisory.
CVE-2018-0734Medium· 5.9The OpenSSL DSA signature algorithm has been shown to be vulnerable to a timing side channel attack
CVE-2019-1563Low· 3.7In situations where an attacker receives automated notification of the success or failure of a decryption attempt an attacker, after sending a very large number of messages to be decrypted, can recover a CMS/PKCS7 transported encryption …
CVE-2018-0732High· 7.5During key agreement in a TLS handshake using a DH(E) based ciphersuite a malicious server can send a very large prime value to the client
CVE-2021-3449Medium· 5.9An OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from a client
CVE-2019-1551Medium· 5.3There is an overflow bug in the x64_64 Montgomery squaring procedure used in exponentiation with 512-bit moduli
CVE-2021-3711Critical· 9.8In order to decrypt SM2 encrypted data an application is expected to call the API function EVP_PKEY_decrypt()