Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The RSA-CRT implementation in the Cavium Software Development Kit (SDK) 2.x, when used on OCTEON II CN6xxx Hardware on Linux to support TLS with Perfect Forward Secrecy (PFS), makes it easier for remote attackers to obtain private RSA keys by conducting a Lenstra side-channel attack.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cavium Software Development Kit 信息泄露漏洞
Vulnerability Description
Cavium Development Kits(CDK)是美国Cavium公司的一套开发工具包。Cavium Software Development Kit(SDK)是其中的一个软件开发工具包。 Cavium SDK 2.x版本中的RSA-CRT实现过程存在安全漏洞。当使用基于Linux平台的OCTEON II CN6xxx Hardware支持包含Perfect Forward Secrecy (PFS)的TLS时,远程攻击者可通过实施Lenstra旁路攻击利用该漏洞获取私有的RSA密钥。
CVSS Information
N/A
Vulnerability Type
N/A