It was found that the GnuTLS implementation of HMAC-SHA-384 was vulnerable to a Lucky thirteen style attack. Remote attackers could use this flaw to conduct distinguishing attacks and plain text recovery attacks via statistical analysis of timing data using crafted packets.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2018-08-22T13:00:00
Updated: 2024-08-05T07:46:47.470Z
Reserved: 2018-05-09T00:00:00
Link: CVE-2018-10845
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-08-22T13:29:00.440
Modified: 2023-02-13T04:50:30.000
Link: CVE-2018-10845
Redhat