CVE-2024-1543

MEDIUM

wolfSSL <5.6.5 - Info Disclosure

Title source: llm
STIX 2.1

Description

The side-channel protected T-Table implementation in wolfSSL up to version 5.6.5 protects against a side-channel attacker with cache-line resolution. In a controlled environment such as Intel SGX, an attacker can gain a per instruction sub-cache-line resolution allowing them to break the cache-line-level protection. For details on the attack refer to: https://doi.org/10.46586/tches.v2024.i1.457-500

Scores

CVSS v3 4.1
EPSS 0.0004
EPSS Percentile 12.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-208 CWE-203
Status published
Products (1)
wolfssl/wolfssl < 5.6.6
Published Aug 29, 2024
Tracked Since Feb 18, 2026