mirror of
https://github.com/Mbed-TLS/mbedtls.git
synced 2025-01-04 08:55:09 +00:00
8c4cabf6aa
Signed-off-by: Janos Follath <janos.follath@arm.com>
7 lines
354 B
Plaintext
7 lines
354 B
Plaintext
Security
|
|
* Fix a timing side channel in RSA private operations. This side channel
|
|
could be sufficient for a local attacker to recover the plaintext. It
|
|
requires the attacker to send a large number of messages for decryption.
|
|
For details, see "Everlasting ROBOT: the Marvin Attack", Hubert Kario.
|
|
Reported by Hubert Kario, Red Hat.
|