Описание
A vulnerability was found that the response times to malformed ciphertexts in RSA-PSK ClientKeyExchange differ from response times of ciphertexts with correct PKCS#1 v1.5 padding.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | ignored | end of standard support |
| devel | released | 3.8.1-4ubuntu6 |
| esm-infra/bionic | released | 3.5.18-1ubuntu1.6+esm1 |
| esm-infra/focal | released | 3.6.13-2ubuntu1.9 |
| esm-infra/xenial | ignored | change too intrusive |
| focal | released | 3.6.13-2ubuntu1.9 |
| jammy | released | 3.7.3-4ubuntu1.3 |
| lunar | released | 3.7.8-5ubuntu1.1 |
| mantic | released | 3.8.1-4ubuntu1.1 |
| trusty | ignored | end of standard support |
Показывать по
10
EPSS
Процентиль: 68%
0.00588
Низкий
5.9 Medium
CVSS3
Связанные уязвимости
CVSS3: 5.9
redhat
почти 2 года назад
A vulnerability was found that the response times to malformed ciphertexts in RSA-PSK ClientKeyExchange differ from response times of ciphertexts with correct PKCS#1 v1.5 padding.
CVSS3: 5.9
nvd
почти 2 года назад
A vulnerability was found that the response times to malformed ciphertexts in RSA-PSK ClientKeyExchange differ from response times of ciphertexts with correct PKCS#1 v1.5 padding.
CVSS3: 5.9
debian
почти 2 года назад
A vulnerability was found that the response times to malformed ciphert ...
EPSS
Процентиль: 68%
0.00588
Низкий
5.9 Medium
CVSS3