CVE Database
/

CVE-2025-9071

Back to search

CVE-2025-9071

Published: Aug 29, 2025

Modified: Aug 29, 2025

PUBLISHED

Description

Erroneously using an all-zero seed for RSA-OEAP padding instead of the generated random bytes, in Oberon microsystems AG’s Oberon PSA Crypto library in all versions up to 1.5.1, results in deterministic RSA and thus in a loss of confidentiality for guessable messages, recognition of repeated messages, and loss of security proofs.

VendorProductVersions

Oberon microsystems AG

Oberon PSA Crypto

affected
1.0.0 - <= 1.5.1

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now