Medium severity5.9NVD Advisory· Published Sep 6, 2021· Updated Jun 17, 2026
CVE-2021-40528
CVE-2021-40528
Description
The ElGamal implementation in Libgcrypt before 1.9.4 allows plaintext recovery because, during interaction between two cryptographic libraries, a certain dangerous combination of the prime defined by the receiver's public key, the generator defined by the receiver's public key, and the sender's ephemeral exponents can lead to a cross-configuration attack against OpenPGP.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- Range: <1.9.4
- osv-coords3 versionspkg:rpm/almalinux/libgcryptpkg:rpm/almalinux/libgcrypt-develpkg:rpm/opensuse/libgcrypt&distro=openSUSE%20Tumbleweed
< 1.8.5-7.el8_6+ 2 more
- (no CPE)range: < 1.8.5-7.el8_6
- (no CPE)range: < 1.8.5-7.el8_6
- (no CPE)range: < 1.10.1-1.1
Patches
Vulnerability mechanics
References
5- ibm.github.io/system-security-research-updates/2021/09/06/insecurity-elgamal-pt2nvdExploitThird Party Advisory
- eprint.iacr.org/2021/923nvdTechnical DescriptionThird Party Advisory
- ibm.github.io/system-security-research-updates/2021/07/20/insecurity-elgamal-pt1nvdThird Party Advisory
- security.gentoo.org/glsa/202210-13nvdThird Party Advisory
- git.gnupg.org/cgi-bin/gitweb.cginvd
News mentions
0No linked articles in our index yet.