High severity7.5NVD Advisory· Published Apr 14, 2017· Updated May 13, 2026
CVE-2016-6489
CVE-2016-6489
Description
The RSA and DSA decryption code in Nettle makes it easier for attackers to discover private keys via a cache side channel attack.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- www.openwall.com/lists/oss-security/2016/07/29/7nvdMailing ListPatchThird Party Advisory
- git.lysator.liu.se/nettle/nettle/commit/3fe1d6549765ecfb24f0b80b2ed086fdc818bff3nvdPatchThird Party Advisory
- rhn.redhat.com/errata/RHSA-2016-2582.htmlnvdThird Party AdvisoryVDB Entry
- www.ubuntu.com/usn/USN-3193-1nvdThird Party Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party AdvisoryVDB Entry
- security.gentoo.org/glsa/201706-21nvdThird Party Advisory
- www.oracle.com/security-alerts/cpuapr2020.htmlnvdThird Party Advisory
- eprint.iacr.org/2016/596.pdfnvdTechnical Description
News mentions
0No linked articles in our index yet.