CVE-2007-3108 - CERT CVE
ID CVE-2007-3108
Sažetak The BN_from_montgomery function in crypto/bn/bn_mont.c in OpenSSL 0.9.8e and earlier does not properly perform Montgomery multiplication, which might allow local users to conduct a side-channel attack and retrieve RSA private keys.
Reference
CVSS
Base: 1.2
Impact: 2.9
Exploitability:1.9
Pristup
VektorSloženostAutentikacija
LOCAL HIGH NONE
Impact
PovjerljivostCjelovitostDostupnost
PARTIAL NONE NONE
CVSS vektor AV:L/AC:H/Au:N/C:P/I:N/A:N
Zadnje važnije ažuriranje 16-10-2018 - 16:47
Objavljeno 08-08-2007 - 01:17