Oberon microsystem AG ocrypto library是瑞士Oberon公司的一个加密软件库。 Oberon microsystem AG ocrypto library 1.0.0至1.5.1之前版本存在安全漏洞,该漏洞源于AES-CBC PKCS#7解密操作存在填充预言攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Oberon microsystems AG | Oberon PSA Crypto | 1.0.0 ~ 1.5.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-7071 | Timing side-channel vulnerability in AES-CBC decryption with PKCS#7 padding in ocrypto lib | |
| CVE-2025-9071 | Insecure RSA-OAEP implementation with all-zero seed for padding in Oberon PSA Crypto |
No comments yet