Marvin Attack vulnerability in SP Math All RSA
Published Feb 9, 2024
5.9
MEDIUMCVSS 3.1
EPSS 0.54%
Description
wolfSSL SP Math All RSA implementation is vulnerable to the Marvin Attack, new variation of a timing Bleichenbacher style attack, when built with the following options to configure:
--enable-all CFLAGS="-DWOLFSSL_STATIC_RSA"
The define “WOLFSSL_STATIC_RSA” enables static RSA cipher suites, which is not recommended, and has been disabled by default since wolfSSL 3.6.6. Therefore the default build since 3.6.6, even with "--enable-all", is not vulnerable to the Marvin Attack. The vulnerability is specific to static RSA cipher suites, and expected to be padding-independent.
The vulnerability allows an attacker to decrypt ciphertexts and forge signatures after probing with a large number of test observations. However the server’s private key is not exposed.
Affected products
-
- Version 3.12.2StatusaffectedConstraints<=5.6.4
- Version
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
Vendor solution
Upgrade wolfSSL to 5.6.6
Metrics
No CVSS v4.0 score for this CVE.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
No CVSS v3.0 score for this CVE.
No CVSS v2.0 score for this CVE.
This CVE is not in the KEV list.
CISA SSVC (Vulnrichment)
Stakeholder-Specific Vulnerability Categorization from CISA ADP.
Exploitation
NoneAutomatable
NoTechnical Impact
PartialDecision
n/aAssessed Feb 12, 2024 · SSVC 2.0.3
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 3, 2026.
Score over time
2024–2026- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (6 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 3, 2026 | 0.54% (0.00539) | 43.37th | v5 (v2026.06.15) |
| Jun 15, 2026 | 0.54% (0.00539) | 40.85th | v5 (v2026.06.15) |
| Mar 17, 2025 | 0.25% (0.00252) | 46.62th | v4 (v2025.03.14) |
| Dec 12, 2024 | 0.08% (0.00080) | 36.31th | v3 (v2023.03.01) |
| May 27, 2024 | 0.04% (0.00043) | 8.70th | v3 (v2023.03.01) |
| Feb 10, 2024 | 0.04% (0.00043) | 6.67th | v3 (v2023.03.01) |
References (2)
- https://people.redhat.com/~hkario/marvin/ technical-descriptionthird-party-advisoryTechnical Description
- https://www.wolfssl.com/docs/security-vulnerabilities/ Vendor Advisory
| Link | Providers | Tags |
|---|---|---|
| https://people.redhat.com/~hkario/marvin/ | technical-descriptionthird-party-advisoryTechnical Description | |
| https://www.wolfssl.com/docs/security-vulnerabilities/ | Vendor Advisory |
Change history (0)
No recorded changes yet.