Loading
Generated remediation guidance and an executive summary. No account required.
crypto/digest.c in Pengutronix barebox through 2021.07.0 leaks timing information because memcmp is used during digest verification.
Use Pengutronix vendor hub and Barebox product page to widen CVE-2021-37847 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2019-15938, CVE-2019-15937 and CVE-2020-13910 for nearby disclosures in the same product family.