Description
Bleichenbacher's attack on PKCS #1 v1.5 padding for RSA in STM32 cryptographic firmware library software expansion for STM32Cube (UM1924). The vulnerability can allow one to use Bleichenbacher's oracle attack to decrypt an encrypted ciphertext by making successive queries to the server using the vulnerable library, resulting in remote information disclosure.
Published: 2021-01-20
Score: 5.9 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2020-13728 Bleichenbacher's attack on PKCS #1 v1.5 padding for RSA in STM32 cryptographic firmware library software expansion for STM32Cube (UM1924). The vulnerability can allow one to use Bleichenbacher's oracle attack to decrypt an encrypted ciphertext by making successive queries to the server using the vulnerable library, resulting in remote information disclosure.
History

No history.

Subscriptions

Ietf Public Key Cryptography Standards \#1
St Stm32cubef0 Stm32cubef1 Stm32cubef2 Stm32cubef3 Stm32cubef4 Stm32cubef7 Stm32cubeg0 Stm32cubeg4 Stm32cubeh7 Stm32cubeide Stm32cubel0 Stm32cubel1 Stm32cubel4 Stm32cubel4\+ Stm32cubel5 Stm32cubemonitor Stm32cubemp1 Stm32cubemx Stm32cubeprogrammer Stm32cubewb Stm32cubewl
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T14:22:25.552Z

Reserved: 2020-08-13T00:00:00.000Z

Link: CVE-2020-20949

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-01-20T16:15:14.007

Modified: 2024-11-21T05:12:19.903

Link: CVE-2020-20949

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses