Описание
x86_64/ecc-384-modp.asm in Nettle before 3.2 does not properly handle carry propagation and produces incorrect output in its implementation of the P-384 NIST elliptic curve, which allows attackers to have unspecified impact via unknown vectors.
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | 3.2-1 |
esm-infra-legacy/trusty | released | 2.7.1-1ubuntu0.1 |
esm-infra/xenial | not-affected | 3.2-1 |
precise | not-affected | code not present |
precise/esm | DNE | precise was not-affected [code not present] |
trusty | released | 2.7.1-1ubuntu0.1 |
trusty/esm | released | 2.7.1-1ubuntu0.1 |
upstream | released | 3.2 |
vivid | ignored | end of life |
vivid/stable-phone-overlay | ignored | end of life |
Показывать по
Ссылки на источники
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3
Связанные уязвимости
x86_64/ecc-384-modp.asm in Nettle before 3.2 does not properly handle carry propagation and produces incorrect output in its implementation of the P-384 NIST elliptic curve, which allows attackers to have unspecified impact via unknown vectors.
x86_64/ecc-384-modp.asm in Nettle before 3.2 does not properly handle carry propagation and produces incorrect output in its implementation of the P-384 NIST elliptic curve, which allows attackers to have unspecified impact via unknown vectors.
x86_64/ecc-384-modp.asm in Nettle before 3.2 does not properly handle ...
x86_64/ecc-384-modp.asm in Nettle before 3.2 does not properly handle carry propagation and produces incorrect output in its implementation of the P-384 NIST elliptic curve, which allows attackers to have unspecified impact via unknown vectors.
Уязвимость криптографической библиотеки Nettle, позволяющая нарушителю повлиять на конфиденциальность, целостность и доступность защищаемой информации
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3