Loading
Generated remediation guidance and an executive summary. No account required.
A cryptographic cache-based side channel in the RSA implementation in Botan before 1.10.17, and 1.11.x and 2.x before 2.3.0, allows a local attacker to recover information about RSA secret keys, as demonstrated by CacheD. This occurs because an array is indexed with bits derived from a secret key.
Cite this page
CVE-2017-14737. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2017-14737
Use Botan Project vendor hub and Botan product page to widen CVE-2017-14737 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2021-24115, CVE-2026-34580 and CVE-2022-43705 for nearby disclosures in the same product family.