CVE-2018-0735 (OpenSSL advisory) [Low severity] 29 October 2018:
The OpenSSL ECDSA signature algorithm has been shown to be
vulnerable to a timing side channel attack. An attacker could use
variations in the signing algorithm to recover the private key. Reported
by Samuel Weiser.
Fixed in OpenSSL 1.1.1a-dev (git commit) (Affected 1.1.1)
Fixed in OpenSSL 1.1.0j-dev (git commit) (Affected 1.1.0-1.1.0i)