Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2021-4409

Опубликовано: 16 нояб. 2021
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2021-4409: libgcrypt security and bug fix update (MODERATE)

[1.8.5-6]

  • Fix for CVE-2021-33560 (#1971421)
  • Enable HW optimizations in FIPS (#1976137)
  • Performance enchancements for ChaCha20 and Poly1305 (#1855231)

[1.8.5-5]

  • Performance enchancements for AES-GCM, CRC32 and SHA2 (#1855231)

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

libgcrypt

1.8.5-6.el8

libgcrypt-devel

1.8.5-6.el8

Oracle Linux x86_64

libgcrypt

1.8.5-6.el8

libgcrypt-devel

1.8.5-6.el8

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 4 лет назад

Libgcrypt before 1.8.8 and 1.9.x before 1.9.3 mishandles ElGamal encryption because it lacks exponent blinding to address a side-channel attack against mpi_powm, and the window size is not chosen appropriately. This, for example, affects use of ElGamal in OpenPGP.

CVSS3: 7.5
redhat
около 4 лет назад

Libgcrypt before 1.8.8 and 1.9.x before 1.9.3 mishandles ElGamal encryption because it lacks exponent blinding to address a side-channel attack against mpi_powm, and the window size is not chosen appropriately. This, for example, affects use of ElGamal in OpenPGP.

CVSS3: 7.5
nvd
около 4 лет назад

Libgcrypt before 1.8.8 and 1.9.x before 1.9.3 mishandles ElGamal encryption because it lacks exponent blinding to address a side-channel attack against mpi_powm, and the window size is not chosen appropriately. This, for example, affects use of ElGamal in OpenPGP.

CVSS3: 7.5
msrc
около 4 лет назад

Описание отсутствует

CVSS3: 7.5
debian
около 4 лет назад

Libgcrypt before 1.8.8 and 1.9.x before 1.9.3 mishandles ElGamal encry ...