SA-2023-035 - OpenSSL Timing Oracle in RSA Decryption (CVE-2022-4304)
Summary A timing-based side channel exists in the OpenSSL RSA Decryption implementation that could be used to recover a plaintext across a network with a Bleichenbacher style attack. An attacker would...