Keegan Ryan discovered that Libgcrypt was susceptible to a side-channel attack. A local attacker could possibly use this attack to recover ECDSA private keys.
{ "availability": "No subscription required", "binaries": [ { "binary_name": "libgcrypt11-dev", "binary_version": "1.5.4-3+really1.6.5-2ubuntu0.5" }, { "binary_name": "libgcrypt20", "binary_version": "1.6.5-2ubuntu0.5" }, { "binary_name": "libgcrypt20-dev", "binary_version": "1.6.5-2ubuntu0.5" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_name": "libgcrypt-mingw-w64-dev", "binary_version": "1.8.1-4ubuntu1.1" }, { "binary_name": "libgcrypt11-dev", "binary_version": "1.5.4-3+really1.8.1-4ubuntu1.1" }, { "binary_name": "libgcrypt20", "binary_version": "1.8.1-4ubuntu1.1" }, { "binary_name": "libgcrypt20-dev", "binary_version": "1.8.1-4ubuntu1.1" } ] }