CVE-2015-7511
published 2016-04-19CVE-2015-7511: Libgcrypt before 1.6.5 does not properly perform elliptic-point curve multiplication during decryption, which makes it easier for physically proximate…
PriorityP47low2CVSS 3.0
AVPACHPRNUINSUCLINAN
EPSS
0.43%
34.8th percentile
Libgcrypt before 1.6.5 does not properly perform elliptic-point curve multiplication during decryption, which makes it easier for physically proximate attackers to extract ECDH keys by measuring electromagnetic emanations.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | libgcrypt20 | < libgcrypt20 1.6.5-2 (bookworm) | libgcrypt20 1.6.5-2 (bookworm) |
| gnupg | libgcrypt | <= 1.6.4 | — |
| msrc | azl3_grub2_2.06-23_on_azure_linux_3.0 | — | — |
CVSS provenance
nvdv3.02.0LOWCVSS:3.0/AV:P/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
nvdv2.01.9LOWAV:L/AC:M/Au:N/C:P/I:N/A:N
osv2.0LOW
vendor_debian2.0LOW
vendor_msrc2.0LOW
vendor_redhat2.0LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Microsoft
Libgcrypt before 1.6.5 does not properly perform elliptic-point curve multiplication during decryption, which makes it easier for physically proximate attackers to extract ECDH keys by measuring elect
vendor_msrc·2016-04-12·CVSS 2.0
CVE-2015-7511 [LOW] CWE-200 Libgcrypt before 1.6.5 does not properly perform elliptic-point curve multiplication during decryption, which makes it easier for physically proximate attackers to extract ECDH keys by measuring elect
Libgcrypt before 1.6.5 does not properly perform elliptic-point curve multiplication during decryption, which makes it easier for physically proximate attackers to extract ECDH keys by measuring electromagnetic emanations.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identifi
Ubuntu
Libgcrypt vulnerability
vendor_ubuntu·2016-02-15
CVE-2015-7511 Libgcrypt vulnerability
Title: Libgcrypt vulnerability
Summary: Libgcrypt could be made to expose sensitive information.
Daniel Genkin, Lev Pachmanov, Itamar Pipman and Eran Tromer discovered
that Libgcrypt was susceptible to an attack via physical side channels. A
local attacker could use this attack to possibly recover private keys.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
libgcrypt: side-channel attack on ECDH with Weierstrass curves
vendor_redhat·2016-02-08·CVSS 2.0
CVE-2015-7511 [LOW] libgcrypt: side-channel attack on ECDH with Weierstrass curves
libgcrypt: side-channel attack on ECDH with Weierstrass curves
Libgcrypt before 1.6.5 does not properly perform elliptic-point curve multiplication during decryption, which makes it easier for physically proximate attackers to extract ECDH keys by measuring electromagnetic emanations.
Package: libgcrypt (Red Hat Enterprise Linux 5) - Not affected
Package: libgcrypt (Red Hat Enterprise Linux 6) - Not affected
Package: libgcrypt (Red Hat Enterprise Linux 7) - Not affected
Debian
CVE-2015-7511: libgcrypt20 - Libgcrypt before 1.6.5 does not properly perform elliptic-point curve multiplica...
vendor_debian·2015·CVSS 2.0
CVE-2015-7511 [LOW] CVE-2015-7511: libgcrypt20 - Libgcrypt before 1.6.5 does not properly perform elliptic-point curve multiplica...
Libgcrypt before 1.6.5 does not properly perform elliptic-point curve multiplication during decryption, which makes it easier for physically proximate attackers to extract ECDH keys by measuring electromagnetic emanations.
Scope: local
bookworm: resolved (fixed in 1.6.5-2)
bullseye: resolved (fixed in 1.6.5-2)
forky: resolved (fixed in 1.6.5-2)
sid: resolved (fixed in 1.6.5-2)
trixie: resolved (fixed in 1.6.5-2)
GHSA
GHSA-2c62-8p8p-hh5w: Libgcrypt before 1
ghsa_unreviewed·2022-05-17
CVE-2015-7511 [LOW] CWE-200 GHSA-2c62-8p8p-hh5w: Libgcrypt before 1
Libgcrypt before 1.6.5 does not properly perform elliptic-point curve multiplication during decryption, which makes it easier for physically proximate attackers to extract ECDH keys by measuring electromagnetic emanations.
OSV
CVE-2015-7511: Libgcrypt before 1
osv·2016-04-19·CVSS 2.0
CVE-2015-7511 [LOW] CVE-2015-7511: Libgcrypt before 1
Libgcrypt before 1.6.5 does not properly perform elliptic-point curve multiplication during decryption, which makes it easier for physically proximate attackers to extract ECDH keys by measuring electromagnetic emanations.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2015-7511 libgcrypt: side-channel attack on ECDH with Weierstrass curves [fedora-all]
bugzilla·2016-02-10·CVSS 2.0
CVE-2015-7511 [LOW] CVE-2015-7511 libgcrypt: side-channel attack on ECDH with Weierstrass curves [fedora-all]
CVE-2015-7511 libgcrypt: side-channel attack on ECDH with Weierstrass curves [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported
Bugzilla
CVE-2015-7511 mingw-libgcrypt: libgcrypt: side-channel attack on ECDH with Weierstrass curves [fedora-all]
bugzilla·2016-02-10·CVSS 2.0
CVE-2015-7511 [LOW] CVE-2015-7511 mingw-libgcrypt: libgcrypt: side-channel attack on ECDH with Weierstrass curves [fedora-all]
CVE-2015-7511 mingw-libgcrypt: libgcrypt: side-channel attack on ECDH with Weierstrass curves [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects mu
Bugzilla
CVE-2015-7511 mingw-libgcrypt: libgcrypt: side-channel attack on ECDH with Weierstrass curves [epel-7]
bugzilla·2016-02-10·CVSS 2.0
CVE-2015-7511 [LOW] CVE-2015-7511 mingw-libgcrypt: libgcrypt: side-channel attack on ECDH with Weierstrass curves [epel-7]
CVE-2015-7511 mingw-libgcrypt: libgcrypt: side-channel attack on ECDH with Weierstrass curves [epel-7]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
[bug automatically created
Bugzilla
CVE-2015-7511 libgcrypt: side-channel attack on ECDH with Weierstrass curves
bugzilla·2016-02-10·CVSS 2.0
CVE-2015-7511 [LOW] CVE-2015-7511 libgcrypt: side-channel attack on ECDH with Weierstrass curves
CVE-2015-7511 libgcrypt: side-channel attack on ECDH with Weierstrass curves
A vulnerability was found in a way the ECDH encryption algorithm decrypts data. An attacker with a specialised setup can extract the secret decryption key from a target located in an adjacent room within seconds. This is done by measuring the target's electromagnetic emanations.
External reference:
http://www.cs.tau.ac.il/~tromer/ecdh/
Upstream announcement:
https://lists.gnupg.org/pipermail/gnupg-announce/2016q1/000384.html
Discussion:
Created libgcrypt tracking bugs for this issue:
Affects: fedora-all [bug 1306185]
---
Created mingw-libgcrypt tracking bugs for this issue:
Affects: fedora-all [bug 1306186]
Affects: epel-7 [bug 1306187]
---
Upstream bug fix:
http://git.gnupg.org/cgi-bin/gitweb.cgi?p=
http://lists.opensuse.org/opensuse-updates/2016-05/msg00027.htmlhttp://www.cs.tau.ac.IL/~tromer/ecdh/http://www.debian.org/security/2016/dsa-3474http://www.debian.org/security/2016/dsa-3478http://www.securityfocus.com/bid/83253http://www.ubuntu.com/usn/USN-2896-1https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/W2IL4PAEICHGA2XMQYRY3MIWHM4GMPAG/https://lists.gnupg.org/pipermail/gnupg-announce/2016q1/000384.htmlhttps://security.gentoo.org/glsa/201610-04http://lists.opensuse.org/opensuse-updates/2016-05/msg00027.htmlhttp://www.cs.tau.ac.IL/~tromer/ecdh/http://www.debian.org/security/2016/dsa-3474http://www.debian.org/security/2016/dsa-3478http://www.securityfocus.com/bid/83253http://www.ubuntu.com/usn/USN-2896-1https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/W2IL4PAEICHGA2XMQYRY3MIWHM4GMPAG/https://lists.gnupg.org/pipermail/gnupg-announce/2016q1/000384.htmlhttps://security.gentoo.org/glsa/201610-04
2016-04-19
Published