It was discovered that Nettle incorrectly handled signature verification. A remote attacker could use this issue to cause Nettle to crash, resulting in a denial of service, or possibly force invalid signatures.
{ "binaries": [ { "binary_name": "libhogweed4", "binary_version": "3.2-1ubuntu0.16.04.2" }, { "binary_name": "libhogweed4-dbgsym", "binary_version": "3.2-1ubuntu0.16.04.2" }, { "binary_name": "libnettle6", "binary_version": "3.2-1ubuntu0.16.04.2" }, { "binary_name": "libnettle6-dbgsym", "binary_version": "3.2-1ubuntu0.16.04.2" }, { "binary_name": "nettle-bin", "binary_version": "3.2-1ubuntu0.16.04.2" }, { "binary_name": "nettle-bin-dbgsym", "binary_version": "3.2-1ubuntu0.16.04.2" }, { "binary_name": "nettle-dbg", "binary_version": "3.2-1ubuntu0.16.04.2" }, { "binary_name": "nettle-dev", "binary_version": "3.2-1ubuntu0.16.04.2" }, { "binary_name": "nettle-dev-dbgsym", "binary_version": "3.2-1ubuntu0.16.04.2" } ], "availability": "No subscription required" }
{ "binaries": [ { "binary_name": "libhogweed4", "binary_version": "3.4-1ubuntu0.1" }, { "binary_name": "libhogweed4-dbgsym", "binary_version": "3.4-1ubuntu0.1" }, { "binary_name": "libnettle6", "binary_version": "3.4-1ubuntu0.1" }, { "binary_name": "libnettle6-dbgsym", "binary_version": "3.4-1ubuntu0.1" }, { "binary_name": "nettle-bin", "binary_version": "3.4-1ubuntu0.1" }, { "binary_name": "nettle-bin-dbgsym", "binary_version": "3.4-1ubuntu0.1" }, { "binary_name": "nettle-dev", "binary_version": "3.4-1ubuntu0.1" } ], "availability": "No subscription required" }
{ "binaries": [ { "binary_name": "libhogweed5", "binary_version": "3.5.1+really3.5.1-2ubuntu0.1" }, { "binary_name": "libhogweed5-dbgsym", "binary_version": "3.5.1+really3.5.1-2ubuntu0.1" }, { "binary_name": "libnettle7", "binary_version": "3.5.1+really3.5.1-2ubuntu0.1" }, { "binary_name": "libnettle7-dbgsym", "binary_version": "3.5.1+really3.5.1-2ubuntu0.1" }, { "binary_name": "nettle-bin", "binary_version": "3.5.1+really3.5.1-2ubuntu0.1" }, { "binary_name": "nettle-bin-dbgsym", "binary_version": "3.5.1+really3.5.1-2ubuntu0.1" }, { "binary_name": "nettle-dev", "binary_version": "3.5.1+really3.5.1-2ubuntu0.1" } ], "availability": "No subscription required" }