Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3740-1 | gnutls28 security update |
EUVD |
EUVD-2024-16346 | A vulnerability was found in GnuTLS. The response times to malformed ciphertexts in RSA-PSK ClientKeyExchange differ from the response times of ciphertexts with correct PKCS#1 v1.5 padding. This issue may allow a remote attacker to perform a timing side-channel attack in the RSA-PSK key exchange, potentially leading to the leakage of sensitive data. CVE-2024-0553 is designated as an incomplete resolution for CVE-2023-5981. |
Ubuntu USN |
USN-6593-1 | GnuTLS vulnerabilities |
Solution
No solution given by the vendor.
Workaround
Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 17 Jun 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 22 Nov 2024 12:00:00 +0000
Mon, 16 Sep 2024 13:30:00 +0000
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2025-08-30T08:19:47.826Z
Reserved: 2024-01-15T04:35:34.146Z
Link: CVE-2024-0553
Updated: 2024-08-01T18:11:35.649Z
Status : Modified
Published: 2024-01-16T12:15:45.557
Modified: 2024-11-21T08:46:51.507
Link: CVE-2024-0553
OpenCVE Enrichment
No data.
Debian DLA
EUVD
Ubuntu USN