Description
The OpenSSL ECDSA signature algorithm has been shown to be vulnerable to a timing side channel attack. An attacker could use variations in the signing algorithm to recover the private key. Fixed in OpenSSL 1.1.0j (Affected 1.1.0-1.1.0i). Fixed in OpenSSL 1.1.1a (Affected 1.1.1).
Remediation
References
Related Vulnerabilities
SharePoint Improper Input Validation Vulnerability (CVE-2026-32201)
MySQL CVE-2021-2042 Vulnerability (CVE-2021-2042)
WordPress Plugin BestSmallShopLite Cross-Site Scripting (1.0.1)
IBMHttpServer Other Vulnerability (CVE-2002-1822)
WordPress Plugin Web to Print Online Designer Security Bypass (2.3.0)