445
VMScore

CVE-2020-17478

Published: 10/08/2020 Updated: 12/08/2020
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

ECDSA/EC/Point.pm in Crypt::Perl prior to 0.33 does not properly consider timing attacks against the EC point multiplication algorithm.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

p5-crypt-perl project p5-crypt-perl

Github Repositories

CPAN’s Crypt::Perl

NAME Crypt::Perl - Cryptography in pure Perl DESCRIPTION Just as it sounds: cryptography with no non-core XS dependencies! This is useful if you don’t have access to other tools that do this work like OpenSSL, CryptX, etc Of course, if you do have access to one of those tools, they may suit your purpose better See submodules for usage examples of: Key generation