« List of all CVEs

CVE-2021-24119

Published: 7/14/2021 Last updated: 11/3/2025 Reserved: 1/14/2021

In Trusted Firmware Mbed TLS 2.24.0, a side-channel vulnerability in base64 PEM file decoding allows system-level (administrator) attackers to obtain information about secret RSA keys via a controlled-channel and side-channel attack on software running in isolated environments that can be single stepped, especially Intel SGX.

CNA assigner: mitre (8254265b-2729-46b6-b9e3-3dfca2d5bfca) Requested by: n/a

Opam packages affected (1)

conf-mbedtls

Products affected (2)

Product Vendor Version
n/a n/a 10 Version 1709 for ARM64-based Systems
n/a n/a n/a

References (26)