Back to search
CVE-2025-9071
Published: Aug 29, 2025
Modified: Aug 29, 2025
PUBLISHED
Description
Erroneously using an all-zero seed for RSA-OEAP padding instead of the generated random bytes, in Oberon microsystems AG’s Oberon PSA Crypto library in all versions up to 1.5.1, results in deterministic RSA and thus in a loss of confidentiality for guessable messages, recognition of repeated messages, and loss of security proofs.
| Vendor | Product | Versions |
|---|---|---|
Oberon microsystems AG | Oberon PSA Crypto | affected 1.0.0 - <= 1.5.1 |
Weaknesses (CWE)
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now