Vulnerability Description
The ECDSA signature implementation in ecdsa.c in Arm Mbed Crypto 2.1 and Mbed TLS through 2.19.1 does not reduce the blinded scalar before computing the inverse, which allows a local attacker to recover the private key via side-channel attacks.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Arm | Mbed Crypto | < 3.0.0 |
| Arm | Mbed Tls | < 2.7.13 |
| Fedoraproject | Fedora | 30 |
| Debian | Debian Linux | 10.0 |
Related Weaknesses (CWE)
References
- https://lists.debian.org/debian-lts-announce/2022/12/msg00036.htmlMailing ListThird Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproMailing ListThird Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproMailing ListThird Party Advisory
- https://tls.mbed.org/tech-updates/security-advisoriesVendor Advisory
- https://tls.mbed.org/tech-updates/security-advisories/mbedtls-security-advisory-Vendor Advisory
- https://lists.debian.org/debian-lts-announce/2022/12/msg00036.htmlMailing ListThird Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproMailing ListThird Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproMailing ListThird Party Advisory
- https://tls.mbed.org/tech-updates/security-advisoriesVendor Advisory
- https://tls.mbed.org/tech-updates/security-advisories/mbedtls-security-advisory-Vendor Advisory
FAQ
What is CVE-2019-18222?
CVE-2019-18222 is a vulnerability with a CVSS score of 4.7 (MEDIUM). The ECDSA signature implementation in ecdsa.c in Arm Mbed Crypto 2.1 and Mbed TLS through 2.19.1 does not reduce the blinded scalar before computing the inverse, which allows a local attacker to recov...
How severe is CVE-2019-18222?
CVE-2019-18222 has been rated MEDIUM with a CVSS base score of 4.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-18222?
Check the references section above for vendor advisories and patch information. Affected products include: Arm Mbed Crypto, Arm Mbed Tls, Fedoraproject Fedora, Debian Debian Linux.