CVE-2014-3591

medium

Description

Libgcrypt before 1.6.3 and GnuPG before 1.4.19 does not implement ciphertext blinding for Elgamal decryption, which allows physically proximate attackers to obtain the server's private key by determining factors using crafted ciphertext and the fluctuations in the electromagnetic field during multiplication.

References

https://lists.gnupg.org/pipermail/gnupg-announce/2015q1/000364.html

https://lists.gnupg.org/pipermail/gnupg-announce/2015q1/000363.html

http://www.debian.org/security/2015/dsa-3185

http://www.debian.org/security/2015/dsa-3184

http://www.cs.tau.ac.il/~tromer/radioexp/

Details

Source: Mitre, NVD

Published: 2019-11-29

Updated: 2019-12-05

Risk Information

CVSS v2

Base Score: 1.9

Vector: CVSS2#AV:L/AC:M/Au:N/C:P/I:N/A:N

Severity: Low

CVSS v3

Base Score: 4.2

Vector: CVSS:3.0/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N

Severity: Medium