The ElGamal implementation in Libgcrypt before 1.9.4 allows plaintext recovery because, during interaction between two cryptographic libraries, a certain dangerous combination of the prime defined by the receiver's public key, the generator defined by the receiver's public key, and the sender's ephemeral exponents can lead to a cross-configuration attack against OpenPGP.
{
"binaries": [
{
"binary_version": "1.8.1-4ubuntu1.3",
"binary_name": "libgcrypt-mingw-w64-dev"
},
{
"binary_version": "1.5.4-3+really1.8.1-4ubuntu1.3",
"binary_name": "libgcrypt11-dev"
},
{
"binary_version": "1.8.1-4ubuntu1.3",
"binary_name": "libgcrypt20"
},
{
"binary_version": "1.8.1-4ubuntu1.3",
"binary_name": "libgcrypt20-dev"
}
],
"availability": "No subscription required"
}{
"binaries": [
{
"binary_version": "1.8.5-5ubuntu1.1",
"binary_name": "libgcrypt-mingw-w64-dev"
},
{
"binary_version": "1.8.5-5ubuntu1.1",
"binary_name": "libgcrypt20"
},
{
"binary_version": "1.8.5-5ubuntu1.1",
"binary_name": "libgcrypt20-dev"
}
],
"availability": "No subscription required"
}{
"binaries": [
{
"binary_version": "1.8.7-5ubuntu2",
"binary_name": "libgcrypt-mingw-w64-dev"
},
{
"binary_version": "1.8.7-5ubuntu2",
"binary_name": "libgcrypt20"
},
{
"binary_version": "1.8.7-5ubuntu2",
"binary_name": "libgcrypt20-dev"
}
],
"availability": "No subscription required"
}{
"binaries": [
{
"binary_version": "1.5.4-3+really1.6.5-2ubuntu0.6+esm1",
"binary_name": "libgcrypt11-dev"
},
{
"binary_version": "1.6.5-2ubuntu0.6+esm1",
"binary_name": "libgcrypt20"
},
{
"binary_version": "1.6.5-2ubuntu0.6+esm1",
"binary_name": "libgcrypt20-dev"
}
],
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro"
}{
"binaries": [
{
"binary_version": "1.8.1-4ubuntu1.fips.3",
"binary_name": "libgcrypt-mingw-w64-dev"
},
{
"binary_version": "1.5.4-3+really1.8.1-4ubuntu1.fips.3",
"binary_name": "libgcrypt11-dev"
},
{
"binary_version": "1.8.1-4ubuntu1.fips.3",
"binary_name": "libgcrypt20"
},
{
"binary_version": "1.8.1-4ubuntu1.fips.3",
"binary_name": "libgcrypt20-dev"
},
{
"binary_version": "1.8.1-4ubuntu1.fips.3",
"binary_name": "libgcrypt20-hmac"
}
],
"availability": "Available with Ubuntu Pro: https://ubuntu.com/pro"
}{
"binaries": [
{
"binary_version": "1.8.5-5ubuntu1.fips.1.1",
"binary_name": "libgcrypt-mingw-w64-dev"
},
{
"binary_version": "1.8.5-5ubuntu1.fips.1.1",
"binary_name": "libgcrypt20"
},
{
"binary_version": "1.8.5-5ubuntu1.fips.1.1",
"binary_name": "libgcrypt20-dev"
},
{
"binary_version": "1.8.5-5ubuntu1.fips.1.1",
"binary_name": "libgcrypt20-hmac"
}
],
"availability": "Available with Ubuntu Pro: https://ubuntu.com/pro"
}{
"binaries": [
{
"binary_version": "1.8.1-4ubuntu1.fips.2.5",
"binary_name": "libgcrypt-mingw-w64-dev"
},
{
"binary_version": "1.5.4-3+really1.8.1-4ubuntu1.fips.2.5",
"binary_name": "libgcrypt11-dev"
},
{
"binary_version": "1.8.1-4ubuntu1.fips.2.5",
"binary_name": "libgcrypt20"
},
{
"binary_version": "1.8.1-4ubuntu1.fips.2.5",
"binary_name": "libgcrypt20-dev"
},
{
"binary_version": "1.8.1-4ubuntu1.fips.2.5",
"binary_name": "libgcrypt20-hmac"
}
]
}{
"binaries": [
{
"binary_version": "1.8.5-5ubuntu1.fips.1.1",
"binary_name": "libgcrypt-mingw-w64-dev"
},
{
"binary_version": "1.8.5-5ubuntu1.fips.1.1",
"binary_name": "libgcrypt20"
},
{
"binary_version": "1.8.5-5ubuntu1.fips.1.1",
"binary_name": "libgcrypt20-dev"
},
{
"binary_version": "1.8.5-5ubuntu1.fips.1.1",
"binary_name": "libgcrypt20-hmac"
}
],
"availability": "Available with Ubuntu Pro: https://ubuntu.com/pro"
}