ZeroHour

CVE-2016-6313

CVSS 3.0
5.3 medium
EPSS
4%p89
Published
()
Modified
Description

The mixing functions in the random number generator in Libgcrypt before 1.5.6, 1.6.x before 1.6.6, and 1.7.x before 1.7.3 and GnuPG before 1.4.21 make it easier for attackers to obtain the values of 160 bits by leveraging knowledge of the previous 4640 bits.

Vendors
gnupgdebiancanonical
Products
libgcrypt, debian linux, ubuntu linux, gnupg
Weakness
CWE-200
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.