IBM CCA could allow a remote attacker to obtain sensitive information during the creation of ECDSA signatures to perform a timing-based attack.
IBM CCA could allow an authenticated user to cause a denial of service in the Hardware Security Module (HSM) using a specially crafted sequence of valid requests.
IBM CCA could allow an attacker to obtain sensitive information due to a timing attack during certain RSA operations.