CVE-2023-26557 | IO FinNet tss-lib up to 1.x Modular Exponentiation paillier.go timing discrepancy (EUVD-2023-1438)
A vulnerability classified as problematic was found in IO FinNet tss-lib up to 1.x. Affected by this vulnerability is an unknown functionality of the file crypto/paillier/paillier.go of the component Modular Exponentiation Handler. The manipulation leads to observable timing discrepancy.
This vulnerability is known as CVE-2023-26557. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.