Breaking the Rabin-Williams digital signature system implementation in the Crypto++ library.
Evgeny G. Sidorov · 2015
This paper describes a bug in the implementation of the Rabin-Williams digital signature in the Crypto++ framework. The bug is in the misuse of blinding technique that is aimed at preventing timing attacks on the digital signature system implementation, but eventu-ally results in an opportunity to find the private key having only two different signatures of the same message. The CVE identifier of the issue is CVE-2015-2141. 1