The private-key operations in ecc.c in wolfSSL before 4.4...
Moderate severity
Unreviewed
Published
May 24, 2022
to the GitHub Advisory Database
•
Updated Apr 4, 2024
Description
Published by the National Vulnerability Database
Jun 25, 2020
Published to the GitHub Advisory Database
May 24, 2022
Last updated
Apr 4, 2024
The private-key operations in ecc.c in wolfSSL before 4.4.0 do not use a constant-time modular inverse when mapping to affine coordinates, aka a "projective coordinates leak."
References