The Kyber reference implementation... CVE-2024-37880

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

The Kyber reference implementation before 9b8d306, when compiled by LLVM Clang through 18.x with some common optimization options, has a timing side channel that allows attackers to recover an ML-KEM 512 secret key in minutes. This occurs because poly_frommsg in poly.c does not prevent Clang from emitting a vulnerable secret-dependent branch.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息