aboutsummaryrefslogtreecommitdiff
path: root/ChangeLog.d
diff options
context:
space:
mode:
authorJanos Follath <janos.follath@arm.com>2022-10-04 14:57:17 +0100
committerJanos Follath <janos.follath@arm.com>2022-11-08 09:09:14 +0000
commit9e4ea3a8a879559d1deac2b7e4cb994addc2cd6e (patch)
tree64db3c343f2b8402b9e4909c296714602d40bd29 /ChangeLog.d
parent95655a2ba0c4d21f15f2f0e59d5bb514f4914074 (diff)
downloadmbedtls-9e4ea3a8a879559d1deac2b7e4cb994addc2cd6e.zip
mbedtls-9e4ea3a8a879559d1deac2b7e4cb994addc2cd6e.tar.gz
mbedtls-9e4ea3a8a879559d1deac2b7e4cb994addc2cd6e.tar.bz2
Add ChangeLog entry
Signed-off-by: Janos Follath <janos.follath@arm.com>
Diffstat (limited to 'ChangeLog.d')
-rw-r--r--ChangeLog.d/rsa-fix-priviliged-side-channel.txt8
1 files changed, 8 insertions, 0 deletions
diff --git a/ChangeLog.d/rsa-fix-priviliged-side-channel.txt b/ChangeLog.d/rsa-fix-priviliged-side-channel.txt
new file mode 100644
index 0000000..d4ffa91
--- /dev/null
+++ b/ChangeLog.d/rsa-fix-priviliged-side-channel.txt
@@ -0,0 +1,8 @@
+Security
+ * An adversary with access to precise enough information about memory
+ accesses (typically, an untrusted operating system attacking a secure
+ enclave) could recover an RSA private key after observing the victim
+ performing a single private-key operation if the window size used for the
+ exponentiation was 3 or smaller. Found and reported by Zili KOU,
+ Wenjian HE, Sharad Sinha, and Wei ZHANG.
+