CVE-2024-28285 Information

Description

A Fault Injection vulnerability in the SymmetricDecrypt function in cryptopp/elgamal.h of Cryptopp Crypto++ 8.9 allows an attacker to co-reside in the same system with a victim process to disclose information and escalate privileges.

Reference

https://gist.github.com/liang-junkai/3e91f58070812ea76c1b8c126c3e28c7

Share on: