Medium severity6.5NVD Advisory· Published Dec 14, 2021· Updated Jun 17, 2026
CVE-2021-42023
CVE-2021-42023
Description
A vulnerability has been identified in ModelSim Simulation (All versions), Questa Simulation (All versions). The RSA white-box implementation in affected applications insufficiently protects the built-in private keys that are required to decrypt electronic intellectual property (IP) data in accordance with the IEEE 1735 recommended practice. This could allow a sophisticated attacker to discover the keys, bypassing the protection intended by the IEEE 1735 recommended practice.
Affected products
6- cpe:2.3:a:siemens:modelsim:*:*:*:*:*:*:*:*
- cpe:2.3:a:siemens:questa:*:*:*:*:*:*:*:*
All versions+ 1 more
- (no CPE)range: All versions
- (no CPE)range: All versions
All versions+ 1 more
- (no CPE)range: All versions
- (no CPE)range: All versions
Patches
Vulnerability mechanics
References
1- cert-portal.siemens.com/productcert/pdf/ssa-400332.pdfnvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.