CVE-2025-9231Covert Timing Channel in Openssl

Severity
6.5MEDIUMNVD
OSV7.5
EPSS
0.0%
top 94.04%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 30

Description

Issue summary: A timing side-channel which could potentially allow remote recovery of the private key exists in the SM2 algorithm implementation on 64 bit ARM platforms. Impact summary: A timing side-channel in SM2 signature computations on 64 bit ARM platforms could allow recovering the private key by an attacker.. While remote key recovery over a network was not attempted by the reporter, timing measurements revealed a timing signal which may allow such an attack. OpenSSL does not directly

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:LExploitability: 3.9 | Impact: 2.5

Affected Packages12 packages

debiandebian/openssl< openssl 3.5.4-1 (forky)
CVEListV5openssl/openssl3.5.03.5.4+3
Alpineopenssl/openssl< 0+4
Debianopenssl/openssl< 3.5.1-1+deb13u1+1
Ubuntuopenssl/openssl< 3.0.2-0ubuntu1.20+5

🔴Vulnerability Details

4
OSV
openssl, openssl1.0 vulnerabilities2025-09-30
GHSA
GHSA-9mrx-mqmg-gwj9: Issue summary: A timing side-channel which could potentially allow remote recovery of the private key exists in the SM2 algorithm implementation on 642025-09-30
OSV
CVE-2025-9231: Issue summary: A timing side-channel which could potentially allow remote recovery of the private key exists in the SM2 algorithm implementation on 642025-09-30
OSV
CVE-2025-9231: Issue summary: A timing side-channel which could potentially allow remote recovery of the private key exists in the SM2 algorithm implementation on 642025-09-30

📋Vendor Advisories

6
BSD
FreeBSD-SA-25:08.openssl: Multiple vulnerabilities in OpenSSL2025-09-30
Ubuntu
OpenSSL vulnerabilities2025-09-30
Red Hat
openssl: Timing side-channel in SM2 algorithm on 64 bit ARM2025-09-30
Microsoft
Timing side-channel in SM2 algorithm on 64 bit ARM2025-09-09
Debian
CVE-2025-9231: openssl - Issue summary: A timing side-channel which could potentially allow remote recove...2025
CVE-2025-9231 — Covert Timing Channel in Openssl | cvebase