CVE Vulnerabilities

CVE-2014-0076

Published: Mar 25, 2014 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
1.9 LOW
AV:L/AC:M/Au:N/C:P/I:N/A:N
RedHat/V2
4.3 MODERATE
AV:N/AC:M/Au:N/C:P/I:N/A:N
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

The Montgomery ladder implementation in OpenSSL through 1.0.0l does not ensure that certain swap operations have a constant-time behavior, which makes it easier for local users to obtain ECDSA nonces via a FLUSH+RELOAD cache side-channel attack.

Affected Software

NameVendorStart VersionEnd Version
OpensslOpenssl*1.0.0l (including)
OpensslOpenssl0.9.1c (including)0.9.1c (including)
OpensslOpenssl0.9.2b (including)0.9.2b (including)
OpensslOpenssl0.9.3 (including)0.9.3 (including)
OpensslOpenssl0.9.3a (including)0.9.3a (including)
OpensslOpenssl0.9.4 (including)0.9.4 (including)
OpensslOpenssl0.9.5 (including)0.9.5 (including)
OpensslOpenssl0.9.5-beta1 (including)0.9.5-beta1 (including)
OpensslOpenssl0.9.5-beta2 (including)0.9.5-beta2 (including)
OpensslOpenssl0.9.5a (including)0.9.5a (including)
OpensslOpenssl0.9.5a-beta1 (including)0.9.5a-beta1 (including)
OpensslOpenssl0.9.5a-beta2 (including)0.9.5a-beta2 (including)
OpensslOpenssl0.9.6 (including)0.9.6 (including)
OpensslOpenssl0.9.6-beta1 (including)0.9.6-beta1 (including)
OpensslOpenssl0.9.6-beta2 (including)0.9.6-beta2 (including)
OpensslOpenssl0.9.6-beta3 (including)0.9.6-beta3 (including)
OpensslOpenssl0.9.6a (including)0.9.6a (including)
OpensslOpenssl0.9.6a-beta1 (including)0.9.6a-beta1 (including)
OpensslOpenssl0.9.6a-beta2 (including)0.9.6a-beta2 (including)
OpensslOpenssl0.9.6a-beta3 (including)0.9.6a-beta3 (including)
OpensslOpenssl0.9.6b (including)0.9.6b (including)
OpensslOpenssl0.9.6c (including)0.9.6c (including)
OpensslOpenssl0.9.6d (including)0.9.6d (including)
OpensslOpenssl0.9.6e (including)0.9.6e (including)
OpensslOpenssl0.9.6f (including)0.9.6f (including)
OpensslOpenssl0.9.6g (including)0.9.6g (including)
OpensslOpenssl0.9.6h (including)0.9.6h (including)
OpensslOpenssl0.9.6i (including)0.9.6i (including)
OpensslOpenssl0.9.6j (including)0.9.6j (including)
OpensslOpenssl0.9.6k (including)0.9.6k (including)
OpensslOpenssl0.9.6l (including)0.9.6l (including)
OpensslOpenssl0.9.6m (including)0.9.6m (including)
OpensslOpenssl0.9.7 (including)0.9.7 (including)
OpensslOpenssl0.9.7-beta1 (including)0.9.7-beta1 (including)
OpensslOpenssl0.9.7-beta2 (including)0.9.7-beta2 (including)
OpensslOpenssl0.9.7-beta3 (including)0.9.7-beta3 (including)
OpensslOpenssl0.9.7-beta4 (including)0.9.7-beta4 (including)
OpensslOpenssl0.9.7-beta5 (including)0.9.7-beta5 (including)
OpensslOpenssl0.9.7-beta6 (including)0.9.7-beta6 (including)
OpensslOpenssl0.9.7a (including)0.9.7a (including)
OpensslOpenssl0.9.7b (including)0.9.7b (including)
OpensslOpenssl0.9.7c (including)0.9.7c (including)
OpensslOpenssl0.9.7d (including)0.9.7d (including)
OpensslOpenssl0.9.7e (including)0.9.7e (including)
OpensslOpenssl0.9.7f (including)0.9.7f (including)
OpensslOpenssl0.9.7g (including)0.9.7g (including)
OpensslOpenssl0.9.7h (including)0.9.7h (including)
OpensslOpenssl0.9.7i (including)0.9.7i (including)
OpensslOpenssl0.9.7j (including)0.9.7j (including)
OpensslOpenssl0.9.7k (including)0.9.7k (including)
OpensslOpenssl0.9.7l (including)0.9.7l (including)
OpensslOpenssl0.9.7m (including)0.9.7m (including)
OpensslOpenssl0.9.8 (including)0.9.8 (including)
OpensslOpenssl0.9.8a (including)0.9.8a (including)
OpensslOpenssl0.9.8b (including)0.9.8b (including)
OpensslOpenssl0.9.8c (including)0.9.8c (including)
OpensslOpenssl0.9.8d (including)0.9.8d (including)
OpensslOpenssl0.9.8e (including)0.9.8e (including)
OpensslOpenssl0.9.8f (including)0.9.8f (including)
OpensslOpenssl0.9.8g (including)0.9.8g (including)
OpensslOpenssl0.9.8h (including)0.9.8h (including)
OpensslOpenssl0.9.8i (including)0.9.8i (including)
OpensslOpenssl0.9.8j (including)0.9.8j (including)
OpensslOpenssl0.9.8k (including)0.9.8k (including)
OpensslOpenssl0.9.8l (including)0.9.8l (including)
OpensslOpenssl0.9.8m (including)0.9.8m (including)
OpensslOpenssl0.9.8m-beta1 (including)0.9.8m-beta1 (including)
OpensslOpenssl0.9.8n (including)0.9.8n (including)
OpensslOpenssl0.9.8o (including)0.9.8o (including)
OpensslOpenssl0.9.8p (including)0.9.8p (including)
OpensslOpenssl0.9.8q (including)0.9.8q (including)
OpensslOpenssl0.9.8r (including)0.9.8r (including)
OpensslOpenssl0.9.8s (including)0.9.8s (including)
OpensslOpenssl0.9.8t (including)0.9.8t (including)
OpensslOpenssl0.9.8u (including)0.9.8u (including)
OpensslOpenssl0.9.8v (including)0.9.8v (including)
OpensslOpenssl0.9.8w (including)0.9.8w (including)
OpensslOpenssl0.9.8x (including)0.9.8x (including)
OpensslOpenssl0.9.8y (including)0.9.8y (including)
OpensslOpenssl1.0.0 (including)1.0.0 (including)
OpensslOpenssl1.0.0-beta1 (including)1.0.0-beta1 (including)
OpensslOpenssl1.0.0-beta2 (including)1.0.0-beta2 (including)
OpensslOpenssl1.0.0-beta3 (including)1.0.0-beta3 (including)
OpensslOpenssl1.0.0-beta4 (including)1.0.0-beta4 (including)
OpensslOpenssl1.0.0-beta5 (including)1.0.0-beta5 (including)
OpensslOpenssl1.0.0a (including)1.0.0a (including)
OpensslOpenssl1.0.0b (including)1.0.0b (including)
OpensslOpenssl1.0.0c (including)1.0.0c (including)
OpensslOpenssl1.0.0d (including)1.0.0d (including)
OpensslOpenssl1.0.0e (including)1.0.0e (including)
OpensslOpenssl1.0.0f (including)1.0.0f (including)
OpensslOpenssl1.0.0g (including)1.0.0g (including)
OpensslOpenssl1.0.0h (including)1.0.0h (including)
OpensslOpenssl1.0.0i (including)1.0.0i (including)
OpensslOpenssl1.0.0j (including)1.0.0j (including)
OpensslOpenssl1.0.0k (including)1.0.0k (including)
OpensslUbuntudevel*
OpensslUbuntuprecise*
OpensslUbuntuquantal*
OpensslUbuntusaucy*

References