Описание
A vulnerability was found that the response times to malformed ciphertexts in RSA-PSK ClientKeyExchange differ from response times of ciphertexts with correct PKCS#1 v1.5 padding.
Релиз | Статус | Примечание |
---|---|---|
bionic | ignored | end of standard support |
devel | released | 3.8.1-4ubuntu6 |
esm-infra/bionic | released | 3.5.18-1ubuntu1.6+esm1 |
esm-infra/focal | not-affected | 3.6.13-2ubuntu1.9 |
esm-infra/xenial | ignored | change too intrusive |
focal | released | 3.6.13-2ubuntu1.9 |
jammy | released | 3.7.3-4ubuntu1.3 |
lunar | released | 3.7.8-5ubuntu1.1 |
mantic | released | 3.8.1-4ubuntu1.1 |
trusty | ignored | end of standard support |
Показывать по
10
EPSS
Процентиль: 67%
0.00561
Низкий
5.9 Medium
CVSS3
Связанные уязвимости
CVSS3: 5.9
redhat
больше 1 года назад
A vulnerability was found that the response times to malformed ciphertexts in RSA-PSK ClientKeyExchange differ from response times of ciphertexts with correct PKCS#1 v1.5 padding.
CVSS3: 5.9
nvd
больше 1 года назад
A vulnerability was found that the response times to malformed ciphertexts in RSA-PSK ClientKeyExchange differ from response times of ciphertexts with correct PKCS#1 v1.5 padding.
CVSS3: 5.9
debian
больше 1 года назад
A vulnerability was found that the response times to malformed ciphert ...
EPSS
Процентиль: 67%
0.00561
Низкий
5.9 Medium
CVSS3