Wind River Support Network

HomeDefectsLIN1023-4414
Not to be fixed

LIN1023-4414 : Security Advisory - wolfssl - CVE-2024-2881

Created: Mar 26, 2024    Updated: Mar 27, 2024
Resolved Date: Mar 26, 2024
Found In Version: 10.23.30.1
Severity: Standard
Applicable for: Wind River Linux LTS 23
Component/s: Userspace

Description

wolfssl: Fault injection attack with EdDSA signature operations. This affects ed25519 sign operations where the system could be susceptible to Rowhammer attacks.

https://www.wolfssl.com/docs/security-vulnerabilities/

CREATE(Triage):(User=admin) CVE-2024-2881 (https://nvd.nist.gov/vuln/detail/CVE-2024-2881)
Live chat
Online