CVE-2018-0495

Advisory lineage Upstream: 0 Downstream: 25
Modified
Published: 13 Jun 2018, 23:00
Last modified:05 Aug 2024, 03:28

Vulnerability Summary

Overall Risk (default)
medium
29/100
CVSS Score
4.7 MEDIUM
v3.0 (nvd)
EPSS Score
0.3% LOW
0% probability +0.05%
KEV
Not listed
Ransomware
No reports
Public exploits
1 found
Dark Web
Not detected

Timeline

13 Jun 2018, 23:00
Published
Vulnerability first disclosed
05 Aug 2024, 03:28
Last Modified
Vulnerability information updated

Description

Libgcrypt before 1.7.10 and 1.8.x before 1.8.3 allows a memory-cache side-channel attack on ECDSA signatures that can be mitigated through the use of blinding during the signing process in the _gcry_ecc_ecdsa_sign function in cipher/ecc-ecdsa.c, aka the Return Of the Hidden Number Problem or ROHNP. To discover an ECDSA key, the attacker needs access to either the local machine or a different virtual machine on the same physical host.

CVSS Metrics

  • v3.0MEDIUMScore: 4.7CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
  • v2.0LOWScore: 1.9AV:L/AC:M/Au:N/C:P/I:N/A:N

EPSS Trends

Current EPSS score: 0.30% Percentile: 53%

Techniques & Countermeasures

  • CWE-203Observable Discrepancy

    The product behaves differently or sends different responses under different circumstances in a way that is observable to an unauthorized actor.

Affected Systems

  • canonicalubuntu_linux

    12.04 | 14.04 | 16.04 | 17.10 | 18.04 | 18.10

  • debiandebian_linux

    8.0 | 9.0

  • gnupglibgcrypt

    < 1.7.10 | ≥ 1.8.0, < 1.8.3

  • oracletraffic_director

    11.1.1.9.0

  • redhatansible_tower

    3.3

  • redhatenterprise_linux_desktop

    7.0

  • redhatenterprise_linux_server

    7.0

  • redhatenterprise_linux_workstation

    7.0

References (21)