Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2024-28834

Опубликовано: 21 мар. 2024
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 5.3

Описание

A flaw was found in GnuTLS. The Minerva attack is a cryptographic vulnerability that exploits deterministic behavior in systems like GnuTLS, leading to side-channel leaks. In specific scenarios, such as when using the GNUTLS_PRIVKEY_FLAG_REPRODUCIBLE flag, it can result in a noticeable step in nonce size from 513 to 512 bits, exposing a potential timing side-channel.

РелизСтатусПримечание
devel

released

3.8.3-1.1ubuntu3.1
esm-infra/bionic

not-affected

code not present
esm-infra/focal

not-affected

3.6.13-2ubuntu1.11
esm-infra/xenial

not-affected

code not present
focal

released

3.6.13-2ubuntu1.11
jammy

released

3.7.3-4ubuntu1.5
mantic

released

3.8.1-4ubuntu1.3
noble

released

3.8.3-1.1ubuntu3.1
upstream

needs-triage

Показывать по

EPSS

Процентиль: 77%
0.01138
Низкий

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.3
redhat
больше 1 года назад

A flaw was found in GnuTLS. The Minerva attack is a cryptographic vulnerability that exploits deterministic behavior in systems like GnuTLS, leading to side-channel leaks. In specific scenarios, such as when using the GNUTLS_PRIVKEY_FLAG_REPRODUCIBLE flag, it can result in a noticeable step in nonce size from 513 to 512 bits, exposing a potential timing side-channel.

CVSS3: 5.3
nvd
больше 1 года назад

A flaw was found in GnuTLS. The Minerva attack is a cryptographic vulnerability that exploits deterministic behavior in systems like GnuTLS, leading to side-channel leaks. In specific scenarios, such as when using the GNUTLS_PRIVKEY_FLAG_REPRODUCIBLE flag, it can result in a noticeable step in nonce size from 513 to 512 bits, exposing a potential timing side-channel.

CVSS3: 5.3
msrc
8 месяцев назад

Описание отсутствует

CVSS3: 5.3
debian
больше 1 года назад

A flaw was found in GnuTLS. The Minerva attack is a cryptographic vuln ...

CVSS3: 5.3
redos
11 месяцев назад

Уязвимость gnutls

EPSS

Процентиль: 77%
0.01138
Низкий

5.3 Medium

CVSS3