CVE-2014-0076 describes a side-channel vulnerability in the Montgomery ladder implementation of OpenSSL versions up to 1.0.0l. This flaw allows local attackers to potentially recover ECDSA nonces by observing non-constant-time swap operations via a FLUSH+RELOAD cache attack. The vulnerability has a low CVSS score of 1.9, indicating a local attack vector with medium complexity and a partial impact on confidentiality. While there is no known active exploitation or publicly available exploit code, the vulnerability has garnered some community discussion and media coverage, suggesting it was a notable concern at the time of its discovery.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 1.0.0lCPE matchmatch criteria | cpe:2.3:a:openssl:openssl:*:*:*:*:*:*:*:* | ||
0.9.1cCPE matchmatch criteria | cpe:2.3:a:openssl:openssl:0.9.1c:*:*:*:*:*:*:* | ||
0.9.2bCPE matchmatch criteria | cpe:2.3:a:openssl:openssl:0.9.2b:*:*:*:*:*:*:* | ||
0.9.3CPE matchmatch criteria | cpe:2.3:a:openssl:openssl:0.9.3:*:*:*:*:*:*:* | ||
0.9.3aCPE matchmatch criteria | cpe:2.3:a:openssl:openssl:0.9.3a:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:M/Au:N/C:P/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.