Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

CVE-2019-15809

CVE information

Published

4 years ago

Last Modified

3 years ago

CVSSv2.0 Severity

Low

CVSSv3.1 Severity

Medium

Impact Analysis

Description

Smart cards from the Athena SCS manufacturer, based on the Atmel Toolbox 00.03.11.05 and the AT90SC chip, contain a timing side channel in ECDSA signature generation. This allows a local attacker, able to measure the duration of hundreds to thousands of signing operations, to compute the private key used. The issue occurs because the Atmel Toolbox 00.03.11.05 contains two versions of ECDSA signature functions, described as fast and secure, but the affected cards chose to use the fast version, which leaks the bit length of the random nonce via timing. This affects Athena IDProtect 010b.0352.0005, Athena IDProtect 010e.1245.0002, Athena IDProtect 0106.0130.0401, Athena IDProtect 010e.1245.0002, Valid S/A IDflex V 010b.0352.0005, SafeNet eToken 4300 010e.1245.0002, TecSec Armored Card 010e.0264.0001, and TecSec Armored Card 108.0264.0001..

CVSSv2.0 Score

Severity
Low
Base Score
1.2/10
Exploit Score
1.9/10
Access Vector
Local
Access Complexity
High
Authentication Required
None
Impact Score
2.9/10
Confidentiality Impact
Partial
Availability Impact
None
Integrity Impact
None

CVSSv3.1 Score

Severity
Medium
Base Score
4.7/10
Exploit Score
1/10
Access Vector
Local
Access Complexity
High
Privileges Required
Low
Impact Score
3.6/10
Confidentiality Impact
High
Availability Impact
None
Integrity Impact
None
Scope
Unchanged
User Interaction
None

Products Affected

CPE Affected Vulnerable Excluding Edit
cpe:2.3:a:microchip:atmel_toolbox:00.03.11.05:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:o:tecsec:armored_card:108.0264.0001:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:o:tecsec:armored_card:010e.0264.0001:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:o:thalesgroup:etoken_4300:010e.1245.0002:*:*:*:*:*:*
  Yes
- -
cpe:2.3:o:cryptsoft:s\/a_idflex_v:010b.0352.0005:*:*:*:*:*:*
  Yes
- -
cpe:2.3:o:athena-scs:idprotect:0106.0130.0401:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:o:athena-scs:idprotect:010e.1245.0002:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:o:athena-scs:idprotect:010b.0352.0005:*:*:*:*:*:*:*
  Yes
- -