CVE-2018-12437
15.06.2018, 02:29
LibTomCrypt through 1.18.1 allows a memory-cache side-channel attack on ECDSA signatures, aka the Return Of the Hidden Number Problem or ROHNP. To discover an ECDSA key, the attacker needs access to either the local machine or a different virtual machine on the same physical host.Enginsight
Vendor | Product | Version |
---|---|---|
libtom | libtomcrypt | 𝑥 ≤ 1.18.1 |
linaro | op-tee | 𝑥 ≤ 3.5.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration