Vulnerabilities > Information Exposure Through Discrepancy

DATE CVE VULNERABILITY TITLE RISK
2024-02-05 CVE-2023-50781 Information Exposure Through Discrepancy vulnerability in multiple products
A flaw was found in m2crypto.
network
low complexity
redhat m2crypto-project CWE-203
7.5
2024-02-05 CVE-2023-50782 Information Exposure Through Discrepancy vulnerability in multiple products
A flaw was found in the python-cryptography package.
network
low complexity
redhat cryptography-io couchbase CWE-203
7.5
2024-02-05 CVE-2024-0202 Information Exposure Through Discrepancy vulnerability in Cryptlib 3.4.4
A security vulnerability has been identified in the cryptlib cryptographic library when cryptlib is compiled with the support for RSA key exchange ciphersuites in TLS (by setting the USE_RSA_SUITES define), it will be vulnerable to the timing variant of the Bleichenbacher attack.
network
high complexity
cryptlib CWE-203
5.9
2024-02-02 CVE-2021-21575 Information Exposure Through Discrepancy vulnerability in Dell Bsafe Micro-Edition-Suite
Dell BSAFE Micro Edition Suite, versions before 4.5.2, contain an Observable Timing Discrepancy Vulnerability.
network
low complexity
dell CWE-203
critical
9.8
2024-01-31 CVE-2024-23170 Information Exposure Through Discrepancy vulnerability in ARM Mbed TLS
An issue was discovered in Mbed TLS 2.x before 2.28.7 and 3.x before 3.5.2.
local
low complexity
arm CWE-203
5.5
2024-01-31 CVE-2024-0914 Information Exposure Through Discrepancy vulnerability in multiple products
A timing side-channel vulnerability has been discovered in the opencryptoki package while processing RSA PKCS#1 v1.5 padded ciphertexts.
network
high complexity
opencryptoki-project redhat CWE-203
5.9
2024-01-30 CVE-2023-6258 Information Exposure Through Discrepancy vulnerability in Latchset Pkcs11-Provider 0.1
A security vulnerability has been identified in the pkcs11-provider, which is associated with Public-Key Cryptography Standards (PKCS#11).
network
high complexity
latchset CWE-203
8.1
2024-01-30 CVE-2024-21671 Information Exposure Through Discrepancy vulnerability in Vantage6
The vantage6 technology enables to manage and deploy privacy enhancing technologies like Federated Learning (FL) and Multi-Party Computation (MPC).
network
high complexity
vantage6 CWE-203
3.7
2024-01-30 CVE-2024-0564 Information Exposure Through Discrepancy vulnerability in multiple products
A flaw was found in the Linux kernel's memory deduplication mechanism.
low complexity
linux redhat CWE-203
6.5
2024-01-30 CVE-2024-22647 Information Exposure Through Discrepancy vulnerability in Seopanel SEO Panel 4.10.0
An user enumeration vulnerability was found in SEO Panel 4.10.0.
network
low complexity
seopanel CWE-203
5.3