CVE-2021-24115

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
22/02/2021
Last modified:
26/02/2021

Description

In Botan before 2.17.3, constant-time computations are not used for certain decoding and encoding operations (base32, base58, base64, and hex).

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:botan_project:botan:*:*:*:*:*:*:*:* 2.17.3 (excluding)