Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Mageia: 2023-0067 Critical: GnuTLS Timing Attack on RSA Decryption

mageia
Calendar Grey February 27, 2023
Dist Mageia Esm H88
The latest gnutls updates in Mageia resolve a critical timing attack vulnerability connected to RSA decryption. Find out more here.
Timing side channel in the RSA decryption implementation of the GNU TLS library

Summary

Timing side channel in the RSA decryption implementation of the GNU TLS library. (CVE-2023-0361)

References

- https://bugs.mageia.org/show_bug.cgi?id=31558

- https://lists.debian.org/debian-security-announce/2023/msg00038.html

- https://lists.debian.org/debian-lts-announce/2023/02/msg00015.html

- https://www.cve.org/CVERecord?id=CVE-2023-0361

Resolution

SRPMS

- 8/core/gnutls-3.6.15-3.4.mga8

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 27 Feb 2023
URL: https://advisories.mageia.org/MGASA-2023-0067.html
Type: security
CVE: CVE-2023-0361

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here