CVE-2024-1543: wolfSSL
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
The side-channel protected T-Table implementation in wolfSSL up to version 5.6.5 protects against a side-channel attacker with cache-line resolution. In a controlled environment such as Intel SGX, an attacker can gain a per instruction sub-cache-line resolution allowing them to break the cache-line-level protection. For details on the attack refer to: https://doi.org/10.46586/tches.v2024.i1.457-500
Affected products
- wolfSSL wolfSSL: before 5.6.6 (fixed in 5.6.6)
Published 2024-08-29. Last modified 2026-06-17.