ROCA
lorecryptography
A 2017 flaw in RSA key generation in certain chips that made keys factorable.
Return of Coppersmith's Attack exploited a weak RSA keygen routine in a widely used cryptographic library, so affected public keys could be factored. It forced reissuance of many smartcards, TPMs, and identity certificates.
Also known as: ROCA, Return of Coppersmith's Attack, CVE-2017-15361
Sources
- CVE-2017-15361 (2017)