CVE-2017-13095 Information
Feb 14, 2021
cve
Description
The P1735 IEEE standard describes flawed methods for encrypting electronic-design intellectual property (IP) as well as the management of access rights for such IP including modification of a license-deny response to a license grant. The methods are flawed and in the most egregious cases enable attack vectors that allow recovery of the entire underlying plaintext IP. Implementations of IEEE P1735 may be weak to cryptographic attacks that allow an attacker to obtain plaintext intellectual property without the key among other impacts.
CVSS Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Reference
http://www.securityfocus.com/bid/101699 https://www.kb.cert.org/vuls/id/739007
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
7.8
Share on: