The C software implementation of AES Encryption and Decryption in wolfSSL (formerly CyaSSL) before 3.9.10 makes it easier for local users to discover AES keys by leveraging cache-bank timing differences.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
History
No history.
Information
Published : 2016-12-13 16:59
Updated : 2025-04-12 10:46
NVD link : CVE-2016-7440
Mitre link : CVE-2016-7440
CVE.ORG link : CVE-2016-7440
JSON object : View
Products Affected
oracle
- mysql
wolfssl
- wolfssl
mariadb
- mariadb
debian
- debian_linux
CWE