CVE-2025-7071

Severity CVSS v4.0:
MEDIUM
Type:
Unavailable / Other
Publication date:
29/08/2025
Last modified:
29/08/2025

Description

Padding oracle attack vulnerability in Oberon microsystem AG’s ocrypto library in all versions since 3.1.0 and prior to 3.9.2 allows an attacker to recover plaintexts via timing measurements of AES-CBC PKCS#7 decrypt operations.

References to Advisories, Solutions, and Tools