CVE-2025-13912

Multiple constant-time implementations in wolfSSL before version 5.8.4 may be transformed into non-constant-time binary by LLVM optimizations, which can potentially result in observable timing discrepancies and lead to information disclosure through timing side-channel attacks.

Credits

Jing Liu
Zhiyuan Zhang
LUCÍA MARTÍNEZ GAVIER
Gilles Barthe
Marcel Böhme

References