MEDIUM
The TLS implementation in Opera before 12.13 does not properly consider timing side-channel attacks on a MAC check operation during the processing of malformed CBC padding, which allows remote attackers to conduct distinguishing attacks and plaintext-recovery attacks via statistical analysis of timing data for crafted packets, a related issue to CVE-2013-0169
Published Feb 8, 2013
4.0
MEDIUMCVSS 2.0
EPSS 2.16%
Description
Affected products
Remediation
Metrics
References (5)
Change history (0)
No recorded changes yet.