Padding Oracle

GPTKB entity

Statements (22)
Predicate Object
gptkbp:instanceOf Cryptographic attack
gptkbp:affects Web applications
Encrypted cookies
Encrypted tokens
gptkbp:cause Decryption of ciphertexts without key
Plaintext recovery
gptkbp:exploits Padding validation error messages
gptkbp:field Cryptography
gptkbp:firstDescribed gptkb:Serge_Vaudenay
2002
https://www.w3.org/2000/01/rdf-schema#label Padding Oracle
gptkbp:mitigatedBy Authenticated encryption
Constant-time error messages
gptkbp:notableExample Padding Oracle Attack on CBC mode
gptkbp:relatedTo CBC mode
Cryptanalysis
Oracle attack
PKCS#7 padding
gptkbp:requires Observable padding error
gptkbp:target Block cipher modes with padding
gptkbp:bfsParent gptkb:CVE-2014-3566
gptkbp:bfsLayer 6