CVE-2015-2987

high

Description

Type74 ED before 4.0 misuses 128-bit ECB encryption for small files, which makes it easier for attackers to obtain plaintext data via differential cryptanalysis of a file with an original length smaller than 128 bits.

References

http://type74org.blog14.fc2.com/blog-entry-1384.html

http://type74.org/edman5-1.php

http://jvndb.jvn.jp/jvndb/JVNDB-2015-000119

http://jvn.jp/en/jp/JVN91474878/index.html

Details

Source: Mitre, NVD

Published: 2015-08-28

Updated: 2015-08-31

Risk Information

CVSS v2

Base Score: 2.6

Vector: CVSS2#AV:N/AC:H/Au:N/C:P/I:N/A:N

Severity: Low

CVSS v3

Base Score: 7.5

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Severity: High