An issue was discovered in Arm Mbed TLS before 2.23.0. Because of a side channel in modular exponentiation, an RSA private key used in a secure enclave could be disclosed.
{
"versions": [
{
"introduced": "0"
},
{
"fixed": "2.16.7"
},
{
"introduced": "2.17.0"
},
{
"fixed": "2.23.0"
}
]
}