CVE-2018-12435
published 2018-06-15CVE-2018-12435: Botan 2.5.0 through 2.6.0 before 2.7.0 allows a memory-cache side-channel attack on ECDSA signatures, aka the Return Of the Hidden Number Problem or ROHNP…
PriorityP422medium5.9CVSS 3.0
AVLACHPRNUINSCCHINAN
EPSS
0.50%
39.5th percentile
Botan 2.5.0 through 2.6.0 before 2.7.0 allows a memory-cache side-channel attack on ECDSA signatures, aka the Return Of the Hidden Number Problem or ROHNP, related to dsa/dsa.cpp, ec_group/ec_group.cpp, and ecdsa/ecdsa.cpp. To discover an ECDSA key, the attacker needs access to either the local machine or a different virtual machine on the same physical host.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| botan_project | botan | >= 0 < 2.6.0-3 | 2.6.0-3 |
| botan_project | botan | >= 0 < 2.6.0-3 | 2.6.0-3 |
| botan_project | botan | >= 0 < 2.6.0-3 | 2.6.0-3 |
| botan_project | botan | 2.5.0 – 2.7.0 | — |
| debian | botan | < botan 2.6.0-3 (bookworm) | botan 2.6.0-3 (bookworm) |
CVSS provenance
nvdv3.05.9MEDIUMCVSS:3.0/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:N
nvdv2.01.9LOWAV:L/AC:M/Au:N/C:P/I:N/A:N
osv5.9MEDIUM
vendor_debian5.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-xwpq-mm7j-gvv6: Botan 2
ghsa_unreviewed·2022-05-14
CVE-2018-12435 [MEDIUM] CWE-200 GHSA-xwpq-mm7j-gvv6: Botan 2
Botan 2.5.0 through 2.6.0 before 2.7.0 allows a memory-cache side-channel attack on ECDSA signatures, aka the Return Of the Hidden Number Problem or ROHNP, related to dsa/dsa.cpp, ec_group/ec_group.cpp, and ecdsa/ecdsa.cpp. To discover an ECDSA key, the attacker needs access to either the local machine or a different virtual machine on the same physical host.
OSV
CVE-2018-12435: Botan 2
osv·2018-06-15·CVSS 5.9
CVE-2018-12435 [MEDIUM] CVE-2018-12435: Botan 2
Botan 2.5.0 through 2.6.0 before 2.7.0 allows a memory-cache side-channel attack on ECDSA signatures, aka the Return Of the Hidden Number Problem or ROHNP, related to dsa/dsa.cpp, ec_group/ec_group.cpp, and ecdsa/ecdsa.cpp. To discover an ECDSA key, the attacker needs access to either the local machine or a different virtual machine on the same physical host.
Debian
CVE-2018-12435: botan - Botan 2.5.0 through 2.6.0 before 2.7.0 allows a memory-cache side-channel attack...
vendor_debian·2018·CVSS 5.9
CVE-2018-12435 [MEDIUM] CVE-2018-12435: botan - Botan 2.5.0 through 2.6.0 before 2.7.0 allows a memory-cache side-channel attack...
Botan 2.5.0 through 2.6.0 before 2.7.0 allows a memory-cache side-channel attack on ECDSA signatures, aka the Return Of the Hidden Number Problem or ROHNP, related to dsa/dsa.cpp, ec_group/ec_group.cpp, and ecdsa/ecdsa.cpp. To discover an ECDSA key, the attacker needs access to either the local machine or a different virtual machine on the same physical host.
Scope: local
bookworm: resolved (fixed in 2.6.0-3)
bullseye: resolved (fixed in 2.6.0-3)
trixie: resolved (fixed in 2.6.0-3)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-12435 botan: memory-cache side-channel attack on ECDSA signatures [epel-all]
bugzilla·2018-06-15·CVSS 5.9
CVE-2018-12435 [MEDIUM] CVE-2018-12435 botan: memory-cache side-channel attack on ECDSA signatures [epel-all]
CVE-2018-12435 botan: memory-cache side-channel attack on ECDSA signatures [epel-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported ve
Bugzilla
CVE-2018-12435 botan: memory-cache side-channel attack on ECDSA signatures [fedora-all]
bugzilla·2018-06-15·CVSS 5.9
CVE-2018-12435 [MEDIUM] CVE-2018-12435 botan: memory-cache side-channel attack on ECDSA signatures [fedora-all]
CVE-2018-12435 botan: memory-cache side-channel attack on ECDSA signatures [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supporte
Bugzilla
CVE-2018-12435 botan: memory-cache side-channel attack on ECDSA signatures
bugzilla·2018-06-15·CVSS 4.7
CVE-2018-12435 [MEDIUM] CVE-2018-12435 botan: memory-cache side-channel attack on ECDSA signatures
CVE-2018-12435 botan: memory-cache side-channel attack on ECDSA signatures
Botan through 2.6.0 allows a memory-cache side-channel attack on ECDSA signatures, aka the Return Of the Hidden Number Problem or ROHNP. To discover an ECDSA key, the attacker needs access to either the local machine or a different virtual machine on the same physical host.
References:
https://www.nccgroup.trust/us/our-research/technical-advisory-return-of-the-hidden-number-problem/
Discussion:
Created botan tracking bugs for this issue:
Affects: epel-all [bug 1591834]
Affects: fedora-all [bug 1591835]
Created botan2 tracking bugs for this issue:
Affects: fedora-all [bug 1591833]
---
Isn't that a duplicate of CVE-2018-0495 ?
Also, botan Isn't that a duplicate of CVE-2018-0495 ?
i.e. bug 1591163
---
Th
Bugzilla
CVE-2018-12435 botan2: botan: memory-cache side-channel attack on ECDSA signatures [fedora-all]
bugzilla·2018-06-15·CVSS 5.9
CVE-2018-12435 [MEDIUM] CVE-2018-12435 botan2: botan: memory-cache side-channel attack on ECDSA signatures [fedora-all]
CVE-2018-12435 botan2: botan: memory-cache side-channel attack on ECDSA signatures [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple
https://botan.randombit.net/security.htmlhttps://github.com/randombit/botan/commit/48fc8df51d99f9d8ba251219367b3d629cc848e3https://www.nccgroup.trust/us/our-research/technical-advisory-return-of-the-hidden-number-problem/https://botan.randombit.net/security.htmlhttps://github.com/randombit/botan/commit/48fc8df51d99f9d8ba251219367b3d629cc848e3https://www.nccgroup.trust/us/our-research/technical-advisory-return-of-the-hidden-number-problem/
2018-06-15
Published