CVE

Id
95691  
CVE No.
CVE-2016-8871  
Status
Candidate  
Description
In Botan 1.11.29 through 1.11.32, RSA decryption with certain padding options had a detectable timing channel which could given sufficient queries be used to recover plaintext, aka an "OAEP side channel" attack.  
Phase
Assigned (20161021)  
Votes
None (candidate not yet proposed)  
Comments