Security Advisory

CVE-2025-13912

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-12-11 17:09:59
Last updated 2025-12-11 19:35:56
Assigner wolfSSL
CVSS score 1.0
State PUBLISHED

Description

Multiple constant-time implementations in wolfSSL before version 5.8.4 may be transformed into non-constant-time binary by LLVM optimizations, which can potentially result in observable timing discrepancies and lead to information disclosure through timing side-channel attacks.