Logo
vulnerabilityCVE-2025-22866
Name
CVE-2025-22866
Source
NVD ( link)Debian ( link)
Description
Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols.
CWEs
-
Published Date
Updated Date
Workaround
-
Advisories

Analysis#


Vulnerability Ratings#


4
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
openwrt
master
1.24.13-r1
Not Affected
openwrt
master
1.27.0-r1
Not Affected
openwrt
openwrt-25.12
1.24.13-r1
Not Affected
openwrt
openwrt-25.12
1.26.6-r1
Not Affected
yocto
master
1.26.6
Not Affected
yocto
master
1.26.6
Not Affected
yocto
scarthgap
1.22.12
Not Affected
yocto
scarthgap
1.22.12
Not Affected