Lucene search

K
prionPRIOn knowledge basePRION:CVE-2018-16868
HistoryDec 03, 2018 - 2:29 p.m.

Cross site scripting

2018-12-0314:29:00
PRIOn knowledge base
www.prio-n.com
11

5.4 Medium

AI Score

Confidence

High

0.0005 Low

EPSS

Percentile

18.1%

A Bleichenbacher type side-channel based padding oracle attack was found in the way gnutls handles verification of RSA decrypted PKCS#1 v1.5 data. An attacker who is able to run process on the same physical core as the victim process, could use this to extract plaintext or in some cases downgrade any TLS connections to a vulnerable server.

CPENameOperatorVersion
gnutlsle3.6.4

5.4 Medium

AI Score

Confidence

High

0.0005 Low

EPSS

Percentile

18.1%