Description
wolfcrypt/src/ecc.c in wolfSSL before 3.15.1.patch allows a memory-cache side-channel attack on ECDSA signatures, aka the Return Of the Hidden Number Problem or ROHNP. To discover an ECDSA key, the attacker needs access to either the local machine or a different virtual machine on the same physical host.
References (3)
Core 3
Core References
Third Party Advisory x_refsource_misc
https://www.nccgroup.trust/us/our-research/technical-advisory-return-of-the-hidden-number-problem/
Vendor Advisory x_refsource_misc
https://www.wolfssl.com/wolfssh-and-rohnp/
Patch, Third Party Advisory x_refsource_misc
https://github.com/wolfSSL/wolfssl/commit/9b9568d500f31f964af26ba8d01e542e1f27e5ca
Scores
CVSS v3
4.7
EPSS
0.0014
EPSS Percentile
33.5%
Attack Vector
LOCAL
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
Details
CWE
CWE-200
Status
published
Products (1)
wolfssl/wolfssl
< 3.15.3
Published
Jun 15, 2018
Tracked Since
Feb 18, 2026