Description
A timing attack flaw was found in OpenSSL 1.0.1u and before that could allow a malicious user with local access to recover ECDSA P-256 private keys.
Remediation
References
Related Vulnerabilities
MySQL CVE-2013-3804 Vulnerability (CVE-2013-3804)
Caddy Web Server URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2022-29718)
Apache HTTP Server Improper Input Validation Vulnerability (CVE-2011-3368)
WordPress Plugin SS Quiz Multiple Unspecified Vulnerabilities (1.12)
WordPress Plugin Events Manager Multiple Cross-Site Scripting Vulnerabilities (5.3.3)