Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-8871

Опубликовано: 28 окт. 2016
Источник: ubuntu
Приоритет: medium
CVSS2: 2.1
CVSS3: 6.2

Описание

In Botan 1.11.29 through 1.11.32, RSA decryption with certain padding options had a detectable timing channel which could given sufficient queries be used to recover plaintext, aka an "OAEP side channel" attack.

РелизСтатусПримечание
devel

not-affected

esm-apps/xenial

not-affected

esm-infra-legacy/trusty

not-affected

precise

not-affected

trusty

not-affected

trusty/esm

not-affected

upstream

not-affected

vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

xenial

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

precise

not-affected

trusty

DNE

trusty/esm

DNE

upstream

not-affected

vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

xenial

DNE

yakkety

DNE

Показывать по

2.1 Low

CVSS2

6.2 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.2
nvd
больше 9 лет назад

In Botan 1.11.29 through 1.11.32, RSA decryption with certain padding options had a detectable timing channel which could given sufficient queries be used to recover plaintext, aka an "OAEP side channel" attack.

CVSS3: 6.2
debian
больше 9 лет назад

In Botan 1.11.29 through 1.11.32, RSA decryption with certain padding ...

CVSS3: 6.2
github
больше 3 лет назад

In Botan 1.11.29 through 1.11.32, RSA decryption with certain padding options had a detectable timing channel which could given sufficient queries be used to recover plaintext, aka an "OAEP side channel" attack.

2.1 Low

CVSS2

6.2 Medium

CVSS3