oss-sec mailing list archives
Re: Re: CVE Request: nettle's RSA code is vulnerable to cache sharing related attacks
From: Huzaifa Sidhpurwala <huzaifas () redhat com>
Date: Mon, 1 Aug 2016 10:32:53 +0530
On 07/29/2016 10:33 PM, cve-assign () mitre org wrote:
The following whitepaper talks about libgcrypt's RSA code being vulnerable to a cache timing attack, which the paper claims is fixed in 1.6.3.As far as we can tell, your message did not provide a link to a whitepaper, and any attachment did not arrive either through direct email or in any of the oss-security list archives.
Here is the paper i am referring to: https://eprint.iacr.org/2016/596.pdf -- Huzaifa Sidhpurwala / Red Hat Product Security Team
Current thread:
- CVE Request: nettle's RSA code is vulnerable to cache sharing related attacks Huzaifa Sidhpurwala (Jul 29)
- Re: CVE Request: nettle's RSA code is vulnerable to cache sharing related attacks cve-assign (Jul 29)
- Re: Re: CVE Request: nettle's RSA code is vulnerable to cache sharing related attacks Huzaifa Sidhpurwala (Jul 31)
- Re: CVE Request: nettle's RSA code is vulnerable to cache sharing related attacks Hanno Böck (Jul 30)
- Re: CVE Request: nettle's RSA code is vulnerable to cache sharing related attacks cve-assign (Jul 29)