| Severity : |
Low
|
| Published : |
2011-05-31
|
| Modified : |
2013-06-05
|
| Base Score : |
2.6
|
| Details : |
The elliptic curve cryptography (ECC) subsystem in OpenSSL 1.0.0d and earlier, when the Elliptic Curve Digital Signature Algorithm (ECDSA) is used for the ECDHE_ECDSA cipher suite, does not properly implement curves over binary fields, which makes it easier for context-dependent attackers to determine private keys via a timing attack and a lattice calculation.
|
| Product/Version : |
Pro 5.0
Mobilinux 5.0.24
MVL 5 Atom
Pro 5.0.24
MVL 5 OMAP3
MVL 5 OMAP3530
Carrier Grade CGE 6.0
CGE 5.x
Mobilinux 5.x
|
|
CVE Vulnerabilities List CVE-2011