ROCA

lore

cryptography

A 2017 flaw in RSA key generation in certain chips that made keys factorable.

Return of Coppersmith's Attack exploited a weak RSA keygen routine in a widely used cryptographic library, so affected public keys could be factored. It forced reissuance of many smartcards, TPMs, and identity certificates.

Also known as: ROCA, Return of Coppersmith's Attack, CVE-2017-15361

Sources

  • CVE-2017-15361 (2017)

All glossary entries