NA

CVE-2013-1622

Published: 08/02/2013 Updated: 07/11/2023

Vulnerability Summary

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is not a security issue. Further investigation showed that, because of RFC noncompliance, no version or configuration of the product had the vulnerability previously associated with this ID. Notes: none

Vendor Advisories

Debian Bug report logs - #699887 TLS timing attack in polarssl (Lucky 13) Package: polarssl; Maintainer for polarssl is Roland Stigge <stigge@antcomde>; Reported by: Thijs Kinkhorst <thijs@debianorg> Date: Wed, 6 Feb 2013 10:51:04 UTC Severity: serious Tags: security Fixed in versions polarssl/125-1, polarssl/1 ...
Multiple vulnerabilities have been found in PolarSSL The Common Vulnerabilities and Exposures project identifies the following issues: CVE-2013-0169 A timing side channel attack has been found in CBC padding allowing an attacker to recover pieces of plaintext via statistical analysis of crafted packages, known as the Lucky Thirteen is ...