CVE-2016-7440

The C software implementation of AES Encryption and Decryption in wolfSSL (formerly CyaSSL) before 3.9.10 makes it easier for local users to discover AES keys by leveraging cache-bank timing differences.
Configurations

Configuration 1 (hide)

cpe:2.3:a:mariadb:mariadb:10.0.27:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:oracle:mysql:5.1:*:*:*:*:*:*:*

Configuration 3 (hide)

cpe:2.3:a:wolfssl:wolfssl:*:*:*:*:*:*:*:*

Information

Published : 2016-12-13 16:59

Updated : 2019-12-17 20:04


NVD link : CVE-2016-7440

Mitre link : CVE-2016-7440


JSON object : View

Products Affected

wolfssl

  • wolfssl

mariadb

  • mariadb

oracle

  • mysql
CWE
CWE-310

Cryptographic Issues