Security Advisory

CVE-2016-8871

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2016-10-28 15:00:00
Last updated 2024-08-06 02:35:02
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

In Botan 1.11.29 through 1.11.32, RSA decryption with certain padding options had a detectable timing channel which could given sufficient queries be used to recover plaintext, aka an "OAEP side channel" attack.