Description
The OpenSSL DSA signature algorithm has been shown to be vulnerable to a timing side channel attack. An attacker could use variations in the signing algorithm to recover the private key. Fixed in OpenSSL 1.1.1a (Affected 1.1.1). Fixed in OpenSSL 1.1.0j (Affected 1.1.0-1.1.0i). Fixed in OpenSSL 1.0.2q (Affected 1.0.2-1.0.2p).
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-4348-1 | openssl security update |
Debian DSA |
DSA-4355-1 | openssl1.0 security update |
EUVD |
EUVD-2018-1544 | The OpenSSL DSA signature algorithm has been shown to be vulnerable to a timing side channel attack. An attacker could use variations in the signing algorithm to recover the private key. Fixed in OpenSSL 1.1.1a (Affected 1.1.1). Fixed in OpenSSL 1.1.0j (Affected 1.1.0-1.1.0i). Fixed in OpenSSL 1.0.2q (Affected 1.0.2-1.0.2p). |
Ubuntu USN |
USN-3840-1 | OpenSSL vulnerabilities |
References
History
No history.
Subscriptions
Canonical
Subscribe
Ubuntu Linux
Subscribe
Debian
Subscribe
Debian Linux
Subscribe
Netapp
Subscribe
Cloud Backup
Subscribe
Cn1610
Subscribe
Cn1610 Firmware
Subscribe
Oncommand Unified Manager
Subscribe
Santricity Smi-s Provider
Subscribe
Snapcenter
Subscribe
Steelstore
Subscribe
Storage Automation Store
Subscribe
Nodejs
Subscribe
Node.js
Subscribe
Openssl
Subscribe
Openssl
Subscribe
Oracle
Subscribe
Api Gateway
Subscribe
E-business Suite Technology Stack
Subscribe
Enterprise Manager Base Platform
Subscribe
Enterprise Manager Ops Center
Subscribe
Mysql Enterprise Backup
Subscribe
Peoplesoft Enterprise Peopletools
Subscribe
Primavera P6 Professional Project Management
Subscribe
Tuxedo
Subscribe
Redhat
Subscribe
Ansible Tower
Subscribe
Enterprise Linux
Subscribe
Jboss Core Services
Subscribe
Status: PUBLISHED
Assigner: openssl
Published:
Updated: 2024-09-16T23:10:36.543Z
Reserved: 2017-11-30T00:00:00.000Z
Link: CVE-2018-0734
No data.
Status : Modified
Published: 2018-10-30T12:29:00.257
Modified: 2024-11-21T03:38:50.120
Link: CVE-2018-0734
OpenCVE Enrichment
No data.
Debian DSA
EUVD
Ubuntu USN