Sensitive Information Disclosure in Arm Mbed TLS by Measuring Cache Usage
CVE-2020-10941
5.9MEDIUM
What is CVE-2020-10941?
Arm Mbed TLS versions before 2.16.5 are susceptible to a vulnerability where an attacker may exploit cache timing information to retrieve sensitive RSA private keys. This vulnerability enables unauthorized access to cryptographic secrets through analyzing cache behavior during the key import process. Organizations using affected versions should prioritize updating their Mbed TLS implementation to mitigate potential information leakage.