Vulnerability CVE-2023-5981: Information
Description
A vulnerability was found that the response times to malformed ciphertexts in RSA-PSK ClientKeyExchange differ from response times of ciphertexts with correct PKCS#1 v1.5 padding.
Severity: MEDIUM (5.9) Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Fixed packages
Package name | Branch | Fixed in version | Version from repository | Errata ID | Task # | State |
---|---|---|---|---|---|---|
gnutls30 | sisyphus | 3.8.2-alt1 | 3.8.4-alt1 | ALT-PU-2023-7523-2 | 334989 | Fixed |
gnutls30 | sisyphus_e2k | 3.8.2-alt1 | 3.8.4-alt1 | ALT-PU-2023-7611-1 | - | Fixed |
gnutls30 | sisyphus_riscv64 | 3.8.2-alt1 | 3.8.4-alt1 | ALT-PU-2023-7575-1 | - | Fixed |
gnutls30 | p10 | 3.6.16-alt4 | 3.6.16-alt6 | ALT-PU-2023-7522-2 | 334993 | Fixed |
gnutls30 | p10_e2k | 3.6.16-alt4 | 3.6.16-alt6 | ALT-PU-2023-7866-1 | - | Fixed |
gnutls30 | p9 | 3.6.16-alt4 | 3.6.16-alt6 | ALT-PU-2023-7808-2 | 334994 | Fixed |
gnutls30 | c10f1 | 3.6.16-alt4 | 3.6.16-alt6 | ALT-PU-2024-1574-2 | 339384 | Fixed |
gnutls30 | c9f2 | 3.6.16-alt4 | 3.6.16-alt5 | ALT-PU-2024-1572-2 | 339383 | Fixed |