cbcvebase.
CVE-2024-1543
published 2024-08-29

CVE-2024-1543: The side-channel protected T-Table implementation in wolfSSL up to version 5.6.5 protects against a side-channel attacker with cache-line resolution. In a…

PriorityP424medium5.5CVSS 3.1
AVLACLPRLUINSUCHINAN
EPSS
0.18%
8.3th percentile
The side-channel protected T-Table implementation in wolfSSL up to version 5.6.5 protects against a side-channel attacker with cache-line resolution. In a controlled environment such as Intel SGX, an attacker can gain a per instruction sub-cache-line resolution allowing them to break the cache-line-level protection. For details on the attack refer to: https://doi.org/10.46586/tches.v2024.i1.457-500

Affected

9 ranges
VendorProductVersion rangeFixed in
debianwolfssl< wolfssl 5.6.6-1.2 (forky)wolfssl 5.6.6-1.2 (forky)
msrcazure_linux_3.0_arm
msrcazure_linux_3.0_x64
msrccbl_mariner_2.0_arm
msrccbl_mariner_2.0_x64
wolfsslwolfssl< 5.6.65.6.6
wolfsslwolfssl<= 5.6.5
wolfsslwolfssl>= 0 < 5.6.6-1.25.6.6-1.2
wolfsslwolfssl>= 0 < 5.6.6-1.25.6.6-1.2

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
osv5.5MEDIUM
vendor_debian4.1MEDIUM
vendor_msrc4.1MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.