Feed/CVE-2014-0076
CVE-2014-0076LOWCVSS 1.9

CVE-2014-0076

Published Mar 25, 2014·Updated Jun 16, 2026

NVD Description

The Montgomery ladder implementation in OpenSSL through 1.0.0l does not ensure that certain swap operations have a constant-time behavior, which makes it easier for local users to obtain ECDSA nonces via a FLUSH+RELOAD cache side-channel attack.

CVSS Vector

AV:L/AC:M/Au:N/C:P/I:N/A:N

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free