The ECDSA operation of the micro-ecc library 1.0 is vulnerable to simple power analysis attacks which allows an adversary to extract the private ECC key.
{
"cpe": "cpe:2.3:a:micro-ecc_project:micro-ecc:1.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "0"
},
{
"last_affected": "1.0"
}
],
"source": "CPE_FIELD"
}