VYPR
Unrated severityNVD Advisory· Published Mar 25, 2014· Updated May 6, 2026

CVE-2014-0076

CVE-2014-0076

Description

The Montgomery ladder implementation in OpenSSL through 1.0.0l does not ensure that certain swap operations have a constant-time behavior, which makes it easier for local users to obtain ECDSA nonces via a FLUSH+RELOAD cache side-channel attack.

Affected products

123

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

64

News mentions

0

No linked articles in our index yet.