CVE-2017-1000413: Linaro Op-Tee
Medium severity, CVSS 5.9. EPSS: 1.6% chance of exploitation in the next 30 days.
Linaro's open source TEE solution called OP-TEE, version 2.4.0 (and older) is vulnerable a timing attack in the Montgomery parts of libMPA in OP-TEE resulting in a compromised private RSA key.
Affected products
- Linaro Op-Tee: up to and including 2.4.0
Published 2018-01-02. Last modified 2026-06-17.