Vulnerability   
Search   
    Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2013-4242
Description:GnuPG before 1.4.14, and Libgcrypt before 1.5.3 as used in GnuPG 2.0.x and possibly other products, allows local users to obtain private RSA keys via a cache side-channel attack involving the L3 cache, aka Flush+Reload.
Test IDs: 1.3.6.1.4.1.25623.1.0.881808   1.3.6.1.4.1.25623.1.0.841526   1.3.6.1.4.1.25623.1.0.867893   1.3.6.1.4.1.25623.1.0.866456   1.3.6.1.4.1.25623.1.0.866755   1.3.6.1.4.1.25623.1.0.881812   1.3.6.1.4.1.25623.1.0.866443   1.3.6.1.4.1.25623.1.0.892731   1.3.6.1.4.1.25623.1.0.866706   1.3.6.1.4.1.25623.1.0.892730   1.3.6.1.4.1.25623.1.0.871056   1.3.6.1.4.1.25623.1.0.120377   1.3.6.1.4.1.25623.1.0.120378   1.3.6.1.4.1.25623.1.0.123542   1.3.6.1.4.1.25623.1.0.123543   1.3.6.1.4.1.25623.1.0.105557   1.3.6.1.4.1.25623.1.0.702731   1.3.6.1.4.1.25623.1.0.702730   1.3.6.1.4.1.25623.1.1.4.2013.1577.1   1.3.6.1.4.1.25623.1.1.4.2014.0704.1   1.3.6.1.4.1.25623.1.1.4.2013.1352.1  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2013-4242
BugTraq ID: 61464
http://www.securityfocus.com/bid/61464
CERT/CC vulnerability note: VU#976534
http://www.kb.cert.org/vuls/id/976534
Debian Security Information: DSA-2730 (Google Search)
http://www.debian.org/security/2013/dsa-2730
Debian Security Information: DSA-2731 (Google Search)
http://www.debian.org/security/2013/dsa-2731
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=717880
http://eprint.iacr.org/2013/448
http://lists.gnupg.org/pipermail/gnupg-announce/2013q3/000330.html
RedHat Security Advisories: RHSA-2013:1457
http://rhn.redhat.com/errata/RHSA-2013-1457.html
http://secunia.com/advisories/54318
http://secunia.com/advisories/54321
http://secunia.com/advisories/54332
http://secunia.com/advisories/54375
SuSE Security Announcement: openSUSE-SU-2013:1294 (Google Search)
http://lists.opensuse.org/opensuse-updates/2013-08/msg00003.html
http://www.ubuntu.com/usn/USN-1923-1




© 1998-2024 E-Soft Inc. All rights reserved.