cbcvebase.
CVE-2015-7511
published 2016-04-19

CVE-2015-7511: Libgcrypt before 1.6.5 does not properly perform elliptic-point curve multiplication during decryption, which makes it easier for physically proximate…

PriorityP47low2CVSS 3.0
AVPACHPRNUINSUCLINAN
EPSS
0.43%
34.8th percentile
Libgcrypt before 1.6.5 does not properly perform elliptic-point curve multiplication during decryption, which makes it easier for physically proximate attackers to extract ECDH keys by measuring electromagnetic emanations.

Affected

8 ranges
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debiandebian_linux
debiandebian_linux
debianlibgcrypt20< libgcrypt20 1.6.5-2 (bookworm)libgcrypt20 1.6.5-2 (bookworm)
gnupglibgcrypt<= 1.6.4
msrcazl3_grub2_2.06-23_on_azure_linux_3.0

CVSS provenance

nvdv3.02.0LOWCVSS:3.0/AV:P/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
nvdv2.01.9LOWAV:L/AC:M/Au:N/C:P/I:N/A:N
osv2.0LOW
vendor_debian2.0LOW
vendor_msrc2.0LOW
vendor_redhat2.0LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.