CVE-2015-5738 PUBLISHED CVSS 7.5 HIGH

The RSA-CRT implementation in the Cavium Software Development Kit (SDK) 2.x, when used on OCTEON II CN6xxx Hardware on Linux to support TLS with Perfect Forward Secrecy (PFS), makes it easier for remote attackers to obtain private RSA keys by conducting a Lenstra side-channel attack.

EPSS 0.81% · 74.0th percentile

Risk Scores

CVSS v3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.81%
74.0th percentile

Affected Products

VendorProductVersions
marvellsoftware_development_kit2.0
f5traffix_signaling_delivery_controller3.3.2, 4.0.0
n/an/an/a

Timeline

References

Open in Interactive Console →