Note:
This project will be discontinued after December 13, 2021. [more]
2020-09-02
A Lucky 13 timing side channel in mbedtls_ssl_decrypt_buf in library/ssl_msg.c in Trusted Firmware Mbed TLS through 2.23.0 allows an attacker to recover secret key information. This affects CBC mode because of a computed time difference based on a padding length.
Products | Mbed_tls, Debian_linux, Fedora |
Type | Information Exposure Through Discrepancy (CWE-203) |
First patch | - None (likely due to unavailable code) |
Links |
• https://lists.debian.org/debian-lts-announce/2022/12/msg00036.html
• https://tls.mbed.org/tech-updates/security-advisories • https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5OSOFUD6UTGTDDSQRS62BPXDU52I6PUA/ • https://tls.mbed.org/tech-updates/security-advisories/mbedtls-security-advisory-2020-09-1 • https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/OD3NM6GD73CTFFRBKG5G2ACXGG7QQHCC/ |