A flaw was found in the way nettle's RSA decryption functions handled specially crafted ciphertext. An attacker could use this flaw to provide a manipulated ciphertext leading to application crash and denial of service.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-2760-1 | nettle security update |
Debian DSA |
DSA-4933-1 | nettle security update |
Ubuntu USN |
USN-4990-1 | Nettle vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 19 Nov 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-11-19T14:24:23.265Z
Reserved: 2021-06-04T00:00:00
Link: CVE-2021-3580
Updated: 2024-08-03T17:01:06.534Z
Status : Modified
Published: 2021-08-05T21:15:12.853
Modified: 2024-11-21T06:21:53.797
Link: CVE-2021-3580
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
Ubuntu USN