QID 671017
Date Published: 2021-11-24
QID 671017: EulerOS Security Update for nettle (EulerOS-SA-2021-2598)
Nettle is a cryptographic library that is designed to fit easily in more or less any context: In crypto toolkits for object-oriented languages (C++, Python, Pike, ...), in applications like LSH or GNUPG, or even in kernel space.
Security Fix(es):
A flaw was found in the way nettle's RSA decryption functions handled specially crafted ciphertext. An attacker could use this flaw to provide a manipulated ciphertext leading to application crash and denial of service.(CVE-2021-3580)
Note: The preceding description block is extracted directly from the security advisory. Using automation, we have attempted to clean and format it as much as possible without introducing additional issues.
An arbitrary attacker may exploit this vulnerability to compromise the system.
CVEs related to QID 671017
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| EulerOS-SA-2021-2598 | EulerOS V2.0SP3 |
|