CVE-2017-0379
published 2017-08-29CVE-2017-0379: Libgcrypt before 1.8.1 does not properly consider Curve25519 side-channel attacks, which makes it easier for attackers to discover a secret key, related to…
PriorityP339high7.5CVSS 3.0
AVNACLPRNUINSUCHINAN
EPSS
3.51%
87.9th percentile
Libgcrypt before 1.8.1 does not properly consider Curve25519 side-channel attacks, which makes it easier for attackers to discover a secret key, related to cipher/ecc.c and mpi/ec.c.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | libgcrypt20 | < libgcrypt20 1.7.9-1 (bookworm) | libgcrypt20 1.7.9-1 (bookworm) |
| gnupg | libgcrypt | <= 1.8.0 | — |
| gnupg | libgcrypt | — | — |
CVSS provenance
nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
osv7.5HIGH
vendor_debian7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Libgcrypt vulnerability
vendor_ubuntu·2017-09-14
CVE-2017-0379 Libgcrypt vulnerability
Title: Libgcrypt vulnerability
Summary: Libgcrypt could be made to expose sensitive information.
Daniel Genkin, Luke Valenta, and Yuval Yarom discovered that Libgcrypt was
susceptible to an attack via side channels. A local attacker could use this
attack to recover Curve25519 private keys.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
libgcrypt: Missing input validation for X25519 curve
vendor_redhat·2017-08-27·CVSS 7.5
CVE-2017-0379 [HIGH] CWE-200 libgcrypt: Missing input validation for X25519 curve
libgcrypt: Missing input validation for X25519 curve
Libgcrypt before 1.8.1 does not properly consider Curve25519 side-channel attacks, which makes it easier for attackers to discover a secret key, related to cipher/ecc.c and mpi/ec.c.
Package: libgcrypt (Red Hat Enterprise Linux 5) - Not affected
Package: libgcrypt (Red Hat Enterprise Linux 6) - Not affected
Package: libgcrypt (Red Hat Enterprise Linux 7) - Not affected
Package: mingw-virt-viewer (Red Hat Enterprise Virtualization 3) - Not affected
Debian
CVE-2017-0379: libgcrypt20 - Libgcrypt before 1.8.1 does not properly consider Curve25519 side-channel attack...
vendor_debian·2017·CVSS 7.5
CVE-2017-0379 [HIGH] CVE-2017-0379: libgcrypt20 - Libgcrypt before 1.8.1 does not properly consider Curve25519 side-channel attack...
Libgcrypt before 1.8.1 does not properly consider Curve25519 side-channel attacks, which makes it easier for attackers to discover a secret key, related to cipher/ecc.c and mpi/ec.c.
Scope: local
bookworm: resolved (fixed in 1.7.9-1)
bullseye: resolved (fixed in 1.7.9-1)
forky: resolved (fixed in 1.7.9-1)
sid: resolved (fixed in 1.7.9-1)
trixie: resolved (fixed in 1.7.9-1)
GHSA
GHSA-j848-fx94-98m4: Libgcrypt before 1
ghsa_unreviewed·2022-05-14
CVE-2017-0379 [HIGH] CWE-200 GHSA-j848-fx94-98m4: Libgcrypt before 1
Libgcrypt before 1.8.1 does not properly consider Curve25519 side-channel attacks, which makes it easier for attackers to discover a secret key, related to cipher/ecc.c and mpi/ec.c.
OSV
CVE-2017-0379: Libgcrypt before 1
osv·2017-08-29·CVSS 7.5
CVE-2017-0379 [HIGH] CVE-2017-0379: Libgcrypt before 1
Libgcrypt before 1.8.1 does not properly consider Curve25519 side-channel attacks, which makes it easier for attackers to discover a secret key, related to cipher/ecc.c and mpi/ec.c.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2017-0379 mingw-libgcrypt: libgcrypt: Missing input validation for X25519 curve [fedora-all]
bugzilla·2017-08-28·CVSS 7.5
CVE-2017-0379 [HIGH] CVE-2017-0379 mingw-libgcrypt: libgcrypt: Missing input validation for X25519 curve [fedora-all]
CVE-2017-0379 mingw-libgcrypt: libgcrypt: Missing input validation for X25519 curve [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple
Bugzilla
CVE-2017-0379 libgcrypt: Missing input validation for X25519 curve [fedora-all]
bugzilla·2017-08-28·CVSS 7.5
CVE-2017-0379 [HIGH] CVE-2017-0379 libgcrypt: Missing input validation for X25519 curve [fedora-all]
CVE-2017-0379 libgcrypt: Missing input validation for X25519 curve [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versio
Bugzilla
CVE-2017-0379 libgcrypt: Missing input validation for X25519 curve
bugzilla·2017-08-28·CVSS 7.5
CVE-2017-0379 [HIGH] CVE-2017-0379 libgcrypt: Missing input validation for X25519 curve
CVE-2017-0379 libgcrypt: Missing input validation for X25519 curve
Missing input validation in implementation of Curve25519 in libgcrypt allows side channel attack leading to leak of private key.
Upstream patch:
https://git.gnupg.org/cgi-bin/gitweb.cgi?p=libgcrypt.git;a=commit;h=bf76acbf0da6b0f245e491bec12c0f0a1b5be7c9
Discussion:
Created libgcrypt tracking bugs for this issue:
Affects: fedora-all [bug 1485922]
Created mingw-libgcrypt tracking bugs for this issue:
Affects: fedora-all [bug 1485923]
http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.htmlhttp://www.securityfocus.com/bid/100503http://www.securitytracker.com/id/1041294https://bugs.debian.org/873383https://eprint.iacr.org/2017/806https://git.gnupg.org/cgi-bin/gitweb.cgi?p=libgcrypt.git%3Ba=commit%3Bh=da780c8183cccc8f533c8ace8211ac2cb2bdee7bhttps://lists.debian.org/debian-security-announce/2017/msg00221.htmlhttps://security-tracker.debian.org/tracker/CVE-2017-0379https://security.netapp.com/advisory/ntap-20180726-0002/https://www.debian.org/security/2017/dsa-3959https://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.htmlhttp://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.htmlhttp://www.securityfocus.com/bid/100503http://www.securitytracker.com/id/1041294https://bugs.debian.org/873383https://eprint.iacr.org/2017/806https://git.gnupg.org/cgi-bin/gitweb.cgi?p=libgcrypt.git%3Ba=commit%3Bh=da780c8183cccc8f533c8ace8211ac2cb2bdee7bhttps://lists.debian.org/debian-security-announce/2017/msg00221.htmlhttps://security-tracker.debian.org/tracker/CVE-2017-0379https://security.netapp.com/advisory/ntap-20180726-0002/https://www.debian.org/security/2017/dsa-3959https://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.html
2017-08-29
Published