CVE-2020-17478: p5-Crypt-Perl Project p5-Crypt-Perl
High severity, CVSS 7.5. EPSS: 1.1% chance of exploitation in the next 30 days.
ECDSA/EC/Point.pm in Crypt::Perl before 0.33 does not properly consider timing attacks against the EC point multiplication algorithm.
Affected products
- p5-Crypt-Perl Project p5-Crypt-Perl: before 0.33 (fixed in 0.33)
Published 2020-08-10. Last modified 2026-06-17.