İçeriğe atla
Noroxi

CWE-385 · 35 kayıt

Covert Timing Channel

Bu sınıftaki CVE’ler

35 kayıt

  • CVE-2020-29506
    39İzleyin

    Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.5.2, contain an Observable T

    KritikCVSS 9,8İstismar yokEPSS %1

    dell · bsafe crypto-c-micro-edition11 Tem 2022

  • CVE-2020-35166
    39İzleyin

    Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.6, contain an Observable Tim

    KritikCVSS 9,8İstismar yokEPSS %1

    dell · bsafe crypto-c-micro-edition11 Tem 2022

  • CVE-2026-5598
    35İzleyin

    Non-constant time comparisons risk private key leakage in FrodoKEM.

    YüksekCVSS 8,9İstismar yokEPSS %1

    legion of the bouncy castle inc. · bc-java15 Nis 2026

  • CVE-2020-35164
    32İzleyin

    Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.6, contain an Observable Tim

    YüksekCVSS 8,1İstismar yokEPSS %1

    dell · bsafe crypto-c-micro-edition11 Tem 2022

  • Observable Timing Discrepancy in pypqc

    YüksekCVSS 8,2İstismar yok

    PyPI · pypqc5 Haz 2024

  • CVE-2023-3640
    31İzleyin

    Kernel: x86/mm: a per-cpu entry area leak was identified through the init_cea_offsets function when prefetchnta and prefetcht2 instructions being used for the p

    YüksekCVSS 7,8Kavram kanıtıEPSS %1

    linux · linux kernel24 Tem 2023

  • CVE-2019-3732
    30İzleyin

    RSA BSAFE Crypto-C Micro Edition, versions prior to 4.0.5.3 (in 4.0.x) and versions prior to 4.1.3.3 (in 4.1.x), and RSA Micro Edition Suite

    YüksekCVSS 7,5İstismar yokEPSS %1

    dell · bsafe crypto-c-micro-edition30 Eyl 2019

  • CVE-2022-24409
    30İzleyin

    Dell BSAFE SSL-J contains remediation for a covert timing channel vulnerability that may be exploited by malicious users to compromise the a

    YüksekCVSS 7,5İstismar yokEPSS %1

    dell · bsafe ssl-j23 Şub 2022

  • CVE-2024-25964
    30İzleyin

    Dell PowerScale OneFS 9.5.0.x through 9.7.0.x contain a covert timing channel vulnerability.

    YüksekCVSS 7,5İstismar yokEPSS %1

    dell · powerscale onefs25 Mar 2024

  • CVE-2025-59425
    30İzleyin

    vLLM vulnerable to timing attack at bearer auth

    YüksekCVSS 7,5İstismar yokEPSS %1

    vllm · vllm7 Eki 2025

  • CVE-2023-46809
    29İzleyin

    Node.js versions which bundle an unpatched version of OpenSSL or run against a dynamically linked version of OpenSSL which are unpatched are

    YüksekCVSS 7,4İstismar yokEPSS %1

    nodejs · node7 Eyl 2024

  • CVE-2025-0306
    29İzleyin

    Ruby: openssl: ruby marvin attack

    YüksekCVSS 7,4İstismar yokEPSS %1

    red hat · red hat enterprise linux 109 Oca 2025

  • CVE-2017-2624
    28İzleyin

    It was found that xorg-x11-server before 1.19.0 including uses memcmp() to check the received MIT cookie against a series of valid cookies.

    YüksekCVSS 7,0İstismar yokEPSS %1

    x.org · x server27 Tem 2018

  • CVE-2025-9231
    27İzleyin

    Timing side-channel in SM2 algorithm on 64 bit ARM

    OrtaCVSS 6,5İstismar yokEPSS %2

    openssl · openssl30 Eyl 2025

  • CVE-2026-6478
    26İzleyin

    PostgreSQL discloses MD5-hashed passwords via covert timing channel

    OrtaCVSS 6,5İstismar yokEPSS %1

    postgresql · postgresql14 May 2026

  • CVE-2018-10844
    24İzleyin

    It was found that the GnuTLS implementation of HMAC-SHA-256 was vulnerable to a Lucky thirteen style attack.

    OrtaCVSS 5,9İstismar yokEPSS %4

    gnu · gnutls22 Ağu 2018

  • CVE-2018-10845
    24İzleyin

    It was found that the GnuTLS implementation of HMAC-SHA-384 was vulnerable to a Lucky thirteen style attack.

    OrtaCVSS 5,9İstismar yokEPSS %4

    gnu · gnutls22 Ağu 2018

  • CVE-2020-25659
    24İzleyin

    python-cryptography 3.2 is vulnerable to Bleichenbacher timing attacks in the RSA decryption API, via timed processing of valid PKCS#1 v1.5

    OrtaCVSS 5,9İstismar yokEPSS %2

    cryptography.io · cryptography11 Oca 2021

  • CVE-2020-25657
    24İzleyin

    A flaw was found in all released versions of m2crypto, where they are vulnerable to Bleichenbacher timing attacks in the RSA decryption API

    OrtaCVSS 5,9İstismar yokEPSS %2

    m2crypto project · m2crypto12 Oca 2021

  • CVE-2020-25658
    23İzleyin

    It was found that python-rsa is vulnerable to Bleichenbacher timing attacks.

    OrtaCVSS 5,9İstismar yokEPSS %2

    python-rsa project · python-rsa12 Kas 2020

  • CVE-2024-2236
    23İzleyin

    Libgcrypt: vulnerable to marvin attack

    OrtaCVSS 5,9İstismar yokEPSS %1

    red hat · red hat enterprise linux 96 Mar 2024

  • CVE-2024-26306
    23İzleyin

    iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption

    OrtaCVSS 5,9İstismar yokEPSS %1

    es · iperf314 May 2024

  • CVE-2023-49092
    23İzleyin

    RustCrypto/RSA vulnerable to a Marvin Attack via key recovery through timing sidechannels

    OrtaCVSS 5,9İstismar yokEPSS %1

    rustcrypto · rsa28 Kas 2023

  • CVE-2016-7056
    22İzleyin

    A timing attack flaw was found in OpenSSL 1.0.1u and before that could allow a malicious user with local access to recover ECDSA P-256 priva

    OrtaCVSS 5,5İstismar yokEPSS %1

    openssl · openssl10 Eyl 2018

  • CVE-2018-10846
    22İzleyin

    A cache-based side channel in GnuTLS implementation that leads to plain text recovery in cross-VM attack setting was found.

    OrtaCVSS 5,6İstismar yokEPSS %0

    gnu · gnutls22 Ağu 2018

Tüm zafiyet sınıfları