CVE-2015-7511 PUBLISHED

Libgcrypt before 1.6.5 does not properly perform elliptic-point curve multiplication during decryption, which makes it easier for physically proximate attackers to extract ECDH keys by measuring electromagnetic emanations.

EPSS 0.05% · 15.2th percentile

Risk Scores

EPSS Score
0.05%
15.2th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSlibgcrypt110, 1.5.0-3ubuntu3, 1.5.3-2ubuntu1

Timeline

References

Open in Interactive Console →