« List of all CVEs

CVE-2021-24119

Published: 7/14/2021 Last updated: 8/3/2024 Reserved: 1/14/2021

In Trusted Firmware Mbed TLS 2.24.0, a side-channel vulnerability in base64 PEM file decoding allows system-level (administrator) attackers to obtain information about secret RSA keys via a controlled-channel and side-channel attack on software running in isolated environments that can be single stepped, especially Intel SGX.

CNA assigner: mitre (8254265b-2729-46b6-b9e3-3dfca2d5bfca) Requested by: n/a

Opam packages affected (1)

conf-mbedtls

Products affected (1)

Product Vendor Version
n/a n/a 22.0 ap365995

References (12)