Fault Injection Vulnerability in wolfSSL Cryptography
CVE-2019-19962
7.5HIGH
What is CVE-2019-19962?
wolfSSL versions prior to 4.3.0 are susceptible to a fault injection vulnerability due to improper handling of calls to wc_SignatureGenerateHash. This issue can potentially undermine the integrity of RSA cryptographic operations, allowing attackers to exploit the system's cryptographic functions. Users should upgrade to the latest version to mitigate risks associated with this vulnerability.