Búsqueda de    
Vulnerabilidad   
    Buscar 219043 Descripciones CVE y
99761 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.843235
Categoría:Ubuntu Local Security Checks
Título:Ubuntu Update for libgcrypt20 USN-3347-1
Resumen:The remote host is missing an update for the 'libgcrypt20'; package(s) announced via the referenced advisory.
Descripción:Summary:
The remote host is missing an update for the 'libgcrypt20'
package(s) announced via the referenced advisory.

Vulnerability Insight:
Daniel J. Bernstein, Joachim Breitner,
Daniel Genkin, Leon Groot Bruinderink, Nadia Heninger, Tanja Lange, Christine
van Vredendaal, and Yuval Yarom discovered that Libgcrypt was susceptible to an
attack via side channels. A local attacker could use this attack to recover RSA
private keys. (CVE-2017-7526) It was discovered that Libgcrypt was susceptible
to an attack via side channels. A local attacker could use this attack to
possibly recover EdDSA private keys. This issue only applied to Ubuntu 16.04
LTS, Ubuntu 16.10 and Ubuntu 17.04. (CVE-2017-9526)

Affected Software/OS:
libgcrypt20 on Ubuntu 17.04,
Ubuntu 16.10,
Ubuntu 16.04 LTS,
Ubuntu 14.04 LTS

Solution:
Please Install the Updated Packages.

CVSS Score:
4.3

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:N/A:N

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2017-7526
BugTraq ID: 99338
http://www.securityfocus.com/bid/99338
Debian Security Information: DSA-3901 (Google Search)
https://www.debian.org/security/2017/dsa-3901
Debian Security Information: DSA-3960 (Google Search)
https://www.debian.org/security/2017/dsa-3960
https://eprint.iacr.org/2017/627
https://lists.gnupg.org/pipermail/gnupg-announce/2017q2/000408.html
http://www.securitytracker.com/id/1038915
https://usn.ubuntu.com/3733-1/
https://usn.ubuntu.com/3733-2/
Common Vulnerability Exposure (CVE) ID: CVE-2017-9526
BugTraq ID: 99046
http://www.securityfocus.com/bid/99046
Debian Security Information: DSA-3880 (Google Search)
http://www.debian.org/security/2017/dsa-3880
CopyrightCopyright (C) 2017 Greenbone Networks GmbH

Esta es sólo una de 99761 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2024 E-Soft Inc. Todos los derechos reservados.