Errata ID | 337 |
---|---|
Date | 2018-04-18 |
Source package | libgcrypt20 |
Fixed in version | 1.6.3-2+deb8u4 |
Description | This update addresses the following issues: * Mitigate a flush+reload side-channel attack on RSA secret keys dubbed "Sliding right into disaster". (CVE-2017-7526) * ecc: Store EdDSA session key in secure memory (CVE-2017-9526) |
Additional notes | |
CVE ID | CVE-2017-9526 CVE-2017-7526 |
UCS Bug number | #44857 |