CVE-2017-0379

high
Published 2017-08-29 ยท Modified 2026-05-13
CVSS v3
7.5
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS v4 NEW
โ€”
not yet in upstream
VIR risk
7.5

Description

Libgcrypt before 1.8.1 does not properly consider Curve25519 side-channel attacks, which makes it easier for attackers to discover a secret key, related to cipher/ecc.c and mpi/ec.c.

Predictions

Exploit likelihood
83%
Patch ETA
โ€”

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

Mitigation details

Source: Debian Security Tracker ยท View original โ†— ยท DFSG

CVE-2017-0379 NameCVE-2017-0379 DescriptionLibgcrypt before 1.8.1 does not properly consider Curve25519 side-channel attacks, which makes it easier for attackers to discover a secret key, related to cipher/ecc.c and mpi/ec.c. SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)โ€ฆ

CVE-2017-0379

NameCVE-2017-0379
DescriptionLibgcrypt before 1.8.1 does not properly consider Curve25519 side-channel attacks, which makes it easier for attackers to discover a secret key, related to cipher/ecc.c and mpi/ec.c.
SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
ReferencesDSA-3959-1
Debian Bugs873383

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
libgcrypt20 (PTS)bullseye1.8.7-6fixed
bookworm1.10.1-3fixed
bookworm (security)1.10.1-3+deb12u1fixed
trixie1.11.0-7fixed
trixie (security)1.11.0-7+deb13u1fixed
forky, sid1.12.2-1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
libgcrypt11source(unstable)(not affected)
libgcrypt20sourcejessie(not affected)
libgcrypt20sourcestretch1.7.6-2+deb9u2DSA-3959-1
libgcrypt20source(unstable)1.7.9-1873383

Notes

[jessie] - libgcrypt20 <not-affected> (Vulnerable code not present, no Curve25519 support)
- libgcrypt11 <not-affected> (Vulnerable code not present, no Curve25519 support)
https://git.gnupg.org/cgi-bin/gitweb.cgi?p=libgcrypt.git;a=commitdiff;h=da780c8183cccc8f533c8ace8211ac2cb2bdee7b
https://eprint.iacr.org/2017/806

Home - Debian Security - Source (Git)

Apply commands

text fix
Notes
[jessie] - libgcrypt20 <not-affected> (Vulnerable code not present, no Curve25519 support)- libgcrypt11 <not-affected> (Vulnerable code not present, no Curve25519 support)https://git.gnupg.org/cgi-bin/gitweb.cgi?p=libgcrypt.git;a=commitdiff;h=da780c8183cccc8f533c8ace8211ac2cb2bdee7bhttps://eprint.iacr.org/2017/806

OS impact

OSVersionStatusFixed in
suse slesaffected
arch archfixed1.8.1-1
debian debianbookwormfixed1.7.9-1
debian debianbullseyefixed1.7.9-1
debian debianforkyfixed1.7.9-1
debian debiansidfixed1.7.9-1
debian debiantrixiefixed1.7.9-1
debian debian9.0affected

Application impact

VendorProductVersionsFixed
gnupglibgcrypt{"endIncluding":"1.8.0"}

References

CWEs

CWE-200

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.