CWE-385: Covert Timing Channel
Covert timing channels convey information by modulating some aspect of system behavior over time, so that the program receiving the information can observe system behavior and infer protected information.
39 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2025-53826 — FileBrowser Has Insecure JWT Handling Which Allows Session Replay Attacks after Logout
- CVE-2025-59425 — vLLM vulnerable to timing attack at bearer auth
- CVE-2026-5598 — Non-constant time comparisons risk private key leakage in FrodoKEM.
- CVE-2024-23342 — python-ecdsa vulnerable to Minerva attack on P-256
- CVE-2025-59432 — Timing Attack Vulnerability in SCRAM Authentication
- CVE-2025-0306 — Ruby: openssl: ruby marvin attack
- CVE-2024-36405 — Control-flow timing leak in Kyber reference implementation when compiled with Clang 15-18 for -Os, -O1 and other options
- CVE-2025-29780 — Post-Quantum Secure Feldman's Verifiable Secret Sharing has Timing Side-Channels in Matrix Operations
- CVE-2026-6478 — PostgreSQL discloses MD5-hashed passwords via covert timing channel
- CVE-2026-84308 — phpseclib — non-constant-time X25519 scalar multiplication permits full private-key recovery
- CVE-2025-49087 — In Mbed TLS 3.6.1 through 3.6.3 before 3.6.4, a timing discrepancy in block cipher padding removal allows an attacker to
- CVE-2026-55785 — free5GC AUSF uses non-constant-time authentication comparisons and logs XRES* in 5G-AKA
- CVE-2025-9231 — Timing side-channel in SM2 algorithm on 64 bit ARM
Recently published
- CVE-2026-84308 — phpseclib — non-constant-time X25519 scalar multiplication permits full private-key recovery
- CVE-2026-55785 — free5GC AUSF uses non-constant-time authentication comparisons and logs XRES* in 5G-AKA
- CVE-2026-6478 — PostgreSQL discloses MD5-hashed passwords via covert timing channel
- CVE-2026-5598 — Non-constant time comparisons risk private key leakage in FrodoKEM.
- CVE-2025-59425 — vLLM vulnerable to timing attack at bearer auth
- CVE-2025-9231 — Timing side-channel in SM2 algorithm on 64 bit ARM
- CVE-2025-59432 — Timing Attack Vulnerability in SCRAM Authentication
- CVE-2025-49087 — In Mbed TLS 3.6.1 through 3.6.3 before 3.6.4, a timing discrepancy in block cipher padding removal allows an attacker to
- CVE-2025-53826 — FileBrowser Has Insecure JWT Handling Which Allows Session Replay Attacks after Logout
- CVE-2025-29780 — Post-Quantum Secure Feldman's Verifiable Secret Sharing has Timing Side-Channels in Matrix Operations
- CVE-2025-0306 — Ruby: openssl: ruby marvin attack
- CVE-2024-36405 — Control-flow timing leak in Kyber reference implementation when compiled with Clang 15-18 for -Os, -O1 and other options
- CVE-2024-23342 — python-ecdsa vulnerable to Minerva attack on P-256