CVE-2023-6240
Moderate
CVE-2023-6240
A Marvin vulnerability side-channel leakage was found in the RSA decryption operation in the Linux Kernel. This issue may allow a network attacker to decrypt ciphertexts or forge signatures, limiting the services that use that private key.
Exploit probability
1.0%
Published
February 4, 2024
Required by
Not available
Last source change
March 15, 2026
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
Open Source Vulnerabilities
CVE-2023-6240
View original source
A Marvin vulnerability side-channel leakage was found in the RSA decryption operation in the Linux Kernel. This issue may allow a network attacker to decrypt ciphertexts or forge signatures, limiting the services that use that private key.
05 / REFERENCES
Further evidence
- https://access.redhat.com/errata/RHSA-2024:1881
- https://access.redhat.com/errata/RHSA-2024:1882
- https://access.redhat.com/errata/RHSA-2024:2758
- https://access.redhat.com/errata/RHSA-2024:3414
- https://access.redhat.com/errata/RHSA-2024:3421
- https://access.redhat.com/errata/RHSA-2024:3618
- https://access.redhat.com/errata/RHSA-2024:3627
- https://access.redhat.com/security/cve/CVE-2023-6240
- https://bugzilla.redhat.com/show_bug.cgi?id=2250843
- https://people.redhat.com/~hkario/marvin/
- https://security.netapp.com/advisory/ntap-20240628-0002/
- https://securitypitfalls.wordpress.com/2023/10/16/experiment-with-side-channel-attacks-yourself/