OpenSSL 㧠ECDSA ã«ããèªè¨¼æ¹å¼ãå®è£ ãã¦ãã製åãæ¬èå¼±æ§ã®å½±é¿ãåããå¯è½æ§ãããã¾ãã 詳ãã㯠US-CERT Vulnerability Note VU#536044 ãæä¾ããæ å ±ãã確èªãã ããã OpenSSL ãå®è£ ããè¤æ°ã®è£½åã«ã¯ãã¿ã¤ãã³ã°æ»æ (timing attack) ã«ãã£ã¦ ECDSA ã®ç§å¯éµãæ¼ããããåé¡ãåå¨ãã¾ãã "Remote Timing Attacks are Still Practical" ã«ã¯ã以ä¸ã®ããã«è¨è¿°ããã¦ãã¾ãã "For over two decades, timing attacks have been an active area of research within applied cryptography. These attacks exploit cryptosystem or protoc
{{#tags}}- {{label}}
{{/tags}}