Alerts This Week
Warning Icon 1 631
Alerts This Week
Warning Icon 1 631

Debian: 8 Moderate: DLA-1931-2 libgcrypt20 ECDSA Timing Attack

debian lts
Calendar Grey January 1, 2020
Dist Debian Esm H88
A security advisory warns of an insufficient fix for an ECDSA attack vulnerability in libgcrypt20 affecting Debian systems, urging users to update for better protection.
It was discovered that the fix to address an ECDSA timing attack in the libgcrypt20 cryptographic library was incomplete

Summary

We recommend that you upgrade your libgcrypt20 packages.

Further information about Debian LTS security advisories, how to
apply these updates to your system and frequently asked questions can
be found at: https://wiki.debian.org/LTS


Regards,

- --
,'`.
: :' : Chris Lamb
`. `'` lamby@debian.org / chris-lamb.co.uk
`-



Severity
important
Lowest
Low
Medium
High
Critical

Package: libgcrypt20
Version: 1.6.3-2+deb8u8
CVE ID: CVE-2019-13627

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here