Home CVE Database CVE-2017-7526

CVE-2017-7526

Description

Libgcrypt\'s RSA-1024 implementation using left-to-right method for computing the sliding-window expansion was found to be vulnerable to cache side-channel attack resulting into complete break of RSA-1024. The same attack is believed to work on RSA-2048 with moderately more computation. This side-channel requires that attacker can run arbitrary software on the hardware where the private RSA key is used.

Priority: MEDIUM
CVSS v3: 6.8
Publish Date: Jul 27, 2017
Related ID: --
CVSS v2: MEDIUM
Modified Date: Jul 27, 2017

Find out more about CVE-2017-7526 from the MITRE-CVE dictionary and NIST NVD


Products Affected

Login may be required to access defects or downloads.

Related Products

Product Name Status Defect Fixed Downloads
Linux 7 SCP Not Vulnerable -- -- --
Linux 7 CGP Not Vulnerable -- -- --

Comments

libgcrypt

Live chat
Online