CVE-2022-25332: SK_LOAD timing side channel during AES module decryption in Texas Instruments OMAP L138
The AES implementation in the Texas Instruments OMAP L138 (secure variants), present in mask ROM, suffers from a timing side channel which can be exploited by an adversary with non-secure supervisor privileges by managing cache contents and collecting timing information for different ciphertext inputs. Using this side channel, the SK_LOAD secure kernel routine can be used to recover the Customer Encryption Key (CEK).
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2022-25332.
What is the severity of CVE-2022-25332?
The severity of CVE-2022-25332 is medium with a severity value of 4.4.
What software is affected by CVE-2022-25332?
The affected software is Ti Omap-l138 Firmware.
How can an adversary exploit CVE-2022-25332?
An adversary with non-secure supervisor privileges can exploit CVE-2022-25332 by managing cache contents and collecting timing information for different ciphertext inputs.
Is Ti Omap-l138 vulnerable to CVE-2022-25332?
No, Ti Omap-l138 is not vulnerable to CVE-2022-25332.