CVE-2026-41516

Description

A flaw was found in OP-TEE (Trusted Execution Environment). The RSA PKCS#1 v1.5 decryption implementation within the Hisilicon HPRE crypto driver uses a non-constant-time comparison function for label hash verification, leading to multiple distinguishable error paths. This creates a Bleichenbacher-style padding oracle vulnerability. A local attacker with low privileges could exploit this to recover sensitive RSA PKCS#1 v1.5 plaintext information.

Statement

Red Hat Product Security has determined that this vulnerability does not affect any currently supported Red Hat product. This assessment may evolve based on further analysis and discovery. For more information about this vulnerability and the products it affects, please see the linked references.

Understanding the Weakness (CWE)

Confidentiality,Access Control

Technical Impact: Read Application Data; Bypass Protection Mechanism

Frequently Asked Questions

Want to get errata notifications? Sign up here.