Vulnerabilities > CVE-2023-50979 - Information Exposure Through Discrepancy vulnerability in Cryptopp Crypto++

047910
CVSS 5.9 - MEDIUM
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
network
high complexity
cryptopp
CWE-203

Summary

Crypto++ (aka cryptopp) through 8.9.0 has a Marvin side channel during decryption with PKCS#1 v1.5 padding.

Common Weakness Enumeration (CWE)