Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2014-3591
Description:Libgcrypt before 1.6.3 and GnuPG before 1.4.19 does not implement ciphertext blinding for Elgamal decryption, which allows physically proximate attackers to obtain the server's private key by determining factors using crafted ciphertext and the fluctuations in the electromagnetic field during multiplication.
Test IDs: 1.3.6.1.4.1.25623.1.0.703185   1.3.6.1.4.1.25623.1.0.703184   1.3.6.1.4.1.25623.1.1.10.2015.0104   1.3.6.1.4.1.25623.1.1.4.2015.1179.1   1.3.6.1.4.1.25623.1.1.1.2.2015.190   1.3.6.1.4.1.25623.1.1.2.2019.2695   1.3.6.1.4.1.25623.1.1.1.2.2015.175  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2014-3591
http://www.cs.tau.ac.il/~tromer/radioexp/
http://www.debian.org/security/2015/dsa-3184
http://www.debian.org/security/2015/dsa-3185
https://lists.gnupg.org/pipermail/gnupg-announce/2015q1/000363.html
https://lists.gnupg.org/pipermail/gnupg-announce/2015q1/000364.html




© 1998-2025 E-Soft Inc. All rights reserved.