Back

MEDIUM

nss: ECDSA timing attack mitigation bypass

Published Oct 8, 2020

Description

During ECDSA signature generation, padding applied in the nonce designed to ensure constant-time scalar multiplication was removed, resulting in variable-time execution dependent on secret data. This vulnerability affects Firefox < 80 and Firefox for Android < 80.

Affected products

Remediation

Red Hat statement

This is a side channel attack which can used to exact pirate keys when ECDSA signatures are being generated. This attack is only feasible when the attacker is local to the machine or in certain cross-VM scenarios where the signature is being generated. Attacks over the network or via the internet are not feasible.

Red Hat mitigation

This is a side channel attack which can used to exact pirate keys when ECDSA signatures are being generated. This attack is only feasible when the attacker is local to the machine or in certain cross-VM scenarios where the signature is being generated. Attacks over the network or via the internet are not feasible.

Metrics

References (9)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mozilla
Published Oct 8, 2020
Updated Aug 4, 2024
Reserved Apr 28, 2020
NVD
Status Modified
Modified Aug 19, 2026
Red Hat
Severity Moderate
Public date Jun 30, 2020