CRYSTALS-DILITHIUM (in Post-Quantum Cryptography Selected Algorithms 2022) in PQClean d03da30 may allow universal forgeries of digital signatures via a template side-channel attack because of intermediate data leakage of one vector.
Advisories
Source ID Title
EUVD EUVD EUVD-2023-28089 CRYSTALS-DILITHIUM (in Post-Quantum Cryptography Selected Algorithms 2022) in PQClean d03da30 may allow universal forgeries of digital signatures via a template side-channel attack because of intermediate data leakage of one vector.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 02 Apr 2025 17:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-04-02T16:16:44.933Z

Reserved: 2023-01-20T00:00:00.000Z

Link: CVE-2023-24025

cve-icon Vulnrichment

Updated: 2024-08-02T10:49:08.989Z

cve-icon NVD

Status : Modified

Published: 2023-01-20T21:15:11.273

Modified: 2025-04-02T17:15:35.957

Link: CVE-2023-24025

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.