AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-43606

HIGH · CVSS 8.5 EPSS 0.12%

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

The AMD Vitis Libraries' ECDSA secp256k1 component is vulnerable to timing discrepancies that could be exploited by local attackers to conduct timing analysis or electromagnetic emanation attacks. This could lead to the exposure of private cryptographic keys, significantly compromising confidentiality and integrity. Organizations utilizing these libraries, particularly those handling sensitive cryptographic operations, should prioritize remediation efforts.

CVE
CVE-2026-43606
Severity
HIGH
CVSS
8.5
EPSS
0.12%

Original NVD Description

Observable Timing Discrepancy in the AMD Vitis Libraries ECDSA secp256k1 component could allow attackers with local access to potentially perform timing analysis or electromagnetic emanation attacks, resulting in high confidentiality and integrity impact due to the exposure of private cryptographic keys.