You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
safe_pqc_kyber leaks parts of secret keys
High severity
GitHub Reviewed
Published
Dec 30, 2023
in
bwesterb/argyle-kyber
•
Updated Jan 3, 2024
On some platforms, when an attacker can time decapsulation, and in particular when the attacker can forge cipher texts, they can learn (parts of) the secret key.
Does not apply to ephemeral usage, such as when used in the regular way in TLS.
Impact
On some platforms, when an attacker can time decapsulation, and in particular when the attacker can forge cipher texts, they can learn (parts of) the secret key.
Does not apply to ephemeral usage, such as when used in the regular way in TLS.
Patches
Patched in 0.6.2.
References
References