Vulnerability Details CVE-2023-50979
Crypto++ (aka cryptopp) through 8.9.0 has a Marvin side channel during decryption with PKCS#1 v1.5 padding.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 28.8%
CVSS Severity
CVSS v3 Score 5.9
Products affected by CVE-2023-50979
-
cpe:2.3:a:cryptopp:crypto++:5.0
-
cpe:2.3:a:cryptopp:crypto++:5.1
-
cpe:2.3:a:cryptopp:crypto++:5.2
-
cpe:2.3:a:cryptopp:crypto++:5.2.1
-
cpe:2.3:a:cryptopp:crypto++:5.2.3
-
cpe:2.3:a:cryptopp:crypto++:5.3.0
-
cpe:2.3:a:cryptopp:crypto++:5.4
-
cpe:2.3:a:cryptopp:crypto++:5.5
-
cpe:2.3:a:cryptopp:crypto++:5.5.1
-
cpe:2.3:a:cryptopp:crypto++:5.5.2
-
cpe:2.3:a:cryptopp:crypto++:5.6.0
-
cpe:2.3:a:cryptopp:crypto++:5.6.1
-
cpe:2.3:a:cryptopp:crypto++:5.6.2
-
cpe:2.3:a:cryptopp:crypto++:5.6.3
-
cpe:2.3:a:cryptopp:crypto++:5.6.4
-
cpe:2.3:a:cryptopp:crypto++:5.6.5
-
cpe:2.3:a:cryptopp:crypto++:6.0.0
-
cpe:2.3:a:cryptopp:crypto++:6.1.0
-
cpe:2.3:a:cryptopp:crypto++:7.0.0
-
cpe:2.3:a:cryptopp:crypto++:8.0.0
-
cpe:2.3:a:cryptopp:crypto++:8.1.0
-
cpe:2.3:a:cryptopp:crypto++:8.2.0
-
cpe:2.3:a:cryptopp:crypto++:8.3.0
-
cpe:2.3:a:cryptopp:crypto++:8.4.0
-
cpe:2.3:a:cryptopp:crypto++:8.5.0
-
cpe:2.3:a:cryptopp:crypto++:8.6.0
-
cpe:2.3:a:cryptopp:crypto++:8.7.0
-
cpe:2.3:a:cryptopp:crypto++:8.8.0
-
cpe:2.3:a:cryptopp:crypto++:8.9.0