CVE-2018-16869 PUBLISHED

A Bleichenbacher type side-channel based padding oracle attack was found in the way nettle handles endian conversion of RSA decrypted PKCS#1 v1.5 data. An attacker who is able to run a process on the same physical core as the victim process, could use this flaw extract plaintext or in some cases downgrade any TLS connections to a vulnerable server.

EPSS 0.11% · 28.6th percentile

Risk Scores

EPSS Score
0.11%
28.6th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSnettle3.1.1-4, 3.2-1, 3.2-1ubuntu0.16.04.1
Ubuntu:14.04:LTSnettle0, 2.7.1-1, 2.7.1-1ubuntu0.1
Ubuntu:18.04:LTSnettle0, 3.3-2, 3.4-1

Timeline

References

Open in Interactive Console →