The timing attack protection in Rijndael::Enc::ProcessAndXorBlock and Rijndael::Dec::ProcessAndXorBlock in Crypto++ (aka cryptopp) prior to 5.6.4 may be optimized out by the compiler, which allows malicious users to conduct timing attacks.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
cryptopp crypto\\+\\+ |