VYPR
High severity7.5NVD Advisory· Published Feb 13, 2017· Updated Jun 17, 2026

CVE-2016-3995

CVE-2016-3995

Description

The timing attack protection in Rijndael::Enc::ProcessAndXorBlock and Rijndael::Dec::ProcessAndXorBlock in Crypto++ (aka cryptopp) before 5.6.4 may be optimized out by the compiler, which allows attackers to conduct timing attacks.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:cryptopp:crypto\+\+:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:cryptopp:crypto\+\+:*:*:*:*:*:*:*:*range: <=5.6.3
    • (no CPE)range: <5.6.4
  • Range: <5.6.4

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.