Back

MEDIUM

libtomcrypt: memory-cache side-channel attack on ECDSA signatures

Published Jun 15, 2018

Description

LibTomCrypt through 1.18.1 allows a memory-cache side-channel attack on ECDSA signatures, aka the Return Of the Hidden Number Problem or ROHNP. To discover an ECDSA key, the attacker needs access to either the local machine or a different virtual machine on the same physical host.

Affected products

Remediation

Red Hat statement

This flaw was found to be a duplicate of CVE-2018-0495. Please see https://access.redhat.com/security/cve/CVE-2018-0495 for information about affected products and security errata.

Metrics

References (6)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Jun 15, 2018
Updated Aug 5, 2024
Reserved Jun 14, 2018
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date Jun 13, 2018