Lucene search

K
mageiaGentoo FoundationMGASA-2013-0382
HistoryDec 20, 2013 - 9:29 p.m.

Updated gnupg package fixes CVE-2013-4576

2013-12-2021:29:34
Gentoo Foundation
advisories.mageia.org
20

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

EPSS

0.002

Percentile

54.9%

Updated gnupg package fixes security vulnerability: Genkin, Shamir and Tromer discovered that RSA key material could be extracted by using the sound generated by the computer during the decryption of some chosen ciphertexts (CVE-2013-4576).

OSVersionArchitecturePackageVersionFilename
Mageia3noarchgnupg< 1.4.14-1.2gnupg-1.4.14-1.2.mga3

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

EPSS

0.002

Percentile

54.9%