VYPR

rpm package

suse/libnettle&distro=SUSE OpenStack Cloud 8

pkg:rpm/suse/libnettle&distro=SUSE%20OpenStack%20Cloud%208

Vulnerabilities (2)

  • CVE-2021-3580Aug 5, 2021
    affected < 2.7.1-13.6.1fixed 2.7.1-13.6.1

    A flaw was found in the way nettle's RSA decryption functions handled specially crafted ciphertext. An attacker could use this flaw to provide a manipulated ciphertext leading to application crash and denial of service.

  • CVE-2021-20305Apr 5, 2021
    affected < 2.7.1-13.3.1fixed 2.7.1-13.3.1

    A flaw was found in Nettle in versions before 3.7.2, where several Nettle signature verification functions (GOST DSA, EDDSA & ECDSA) result in the Elliptic Curve Cryptography point (ECC) multiply function being called with out-of-range scalers, possibly resulting in incorrect res