Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

Mageia 7: MGASA-2020-0293 Critical: mbedtls RSA Key Leak

mageia
Calendar Grey July 10, 2020
Dist Mageia Esm H88
Enhanced mbedtls modules for Mageia mitigate severe risks related to RSA private key exposure due to side channel attacks.
Updated mbedtls packages fix security vulnerabilities Fix a side channel vulnerability in modular exponentiation that could reveal an RSA private key used in a secure enclave

Summary

Updated mbedtls packages fix security vulnerabilities Fix a side channel vulnerability in modular exponentiation that could reveal an RSA private key used in a secure enclave.

References

- https://bugs.mageia.org/show_bug.cgi?id=26924

- - https://github.com/Mbed-TLS/mbedtls/releases/tag/mbedtls-2.16.7

Resolution

SRPMS

- 7/core/mbedtls-2.16.7-1.mga7

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 10 Jul 2020
URL: https://advisories.mageia.org/MGASA-2020-0293.html
Type: security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here