In wolfSSL before 4.3.0, wceccmulmod_ex does not properly resist side-channel attacks.
{ "urgency": "not yet assigned" }