Skip to content
Noroxi

libtom records

4 published records for vendor libtom.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
100%
Median publish → KEV
No record has entered KEV

Records by year

  1. 17
  2. 18
  3. 19
  4. 23

Bar: total · dark part: CISA KEV.

All records

4 records
  • Integer Overflow vulnerability in mp_grow in libtom libtommath before commit beba892bc0d4e4ded4d667ab1d2a94f4d75109a9, allows attackers to e

    CriticalCVSS 9.8No exploitEPSS 1%

    libtom · libtommathSep 1, 2023

  • In LibTomCrypt through 1.18.2, the der_decode_utf8_string function (in der_decode_utf8_string.c) does not properly detect certain invalid UT

    CriticalCVSS 9.1No exploitEPSS 3%

    libtom · libtomcryptOct 8, 2019

  • CVE-2016-6129
    30Monitor

    The rsa_verify_hash_ex function in rsa_verify_hash.c in LibTomCrypt, as used in OP-TEE before 2.2.0, does not validate that the message leng

    HighCVSS 7.5No exploitEPSS 1%

    libtom · libtomcryptFeb 13, 2017

  • LibTomCrypt through 1.18.1 allows a memory-cache side-channel attack on ECDSA signatures, aka the Return Of the Hidden Number Problem or ROH

    MediumCVSS 4.9No exploitEPSS 1%

    libtom · libtomcryptJun 14, 2018