5
CVSSv2

CVE-2015-2141

Published: 01/07/2015 Updated: 30/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The InvertibleRWFunction::CalculateInverse function in rw.cpp in libcrypt++ 5.6.2 does not properly blind private key operations for the Rabin-Williams digital signature algorithm, which allows remote malicious users to obtain private keys via a timing attack.

Vulnerable Product Search on Vulmon Subscribe to Product

cryptopp crypto\\+\\+ library 5.6.2

opensuse opensuse 13.1

opensuse opensuse 13.2