Alpaquita LinuxStreamSecurity Advisory
Search Cve

CVE-2016-6313

Published: December 13, 2016Last modified: November 9, 2023

Description

The mixing functions in the random number generator in Libgcrypt before 1.5.6, 1.6.x before 1.6.6, and 1.7.x before 1.7.3 and GnuPG before 1.4.21 make it easier for attackers to obtain the values of 160 bits by leveraging knowledge of the previous 4640 bits.

Severity score breakdown

ParameterValue
Base score5.3
Attack VectorNETWORK
Attack complexityLOW
Privileges requiredNONE
User interactionNONE
ScopeUNCHANGED
ConfidentialityLOW
Integrity impactNONE
Availability impactNONE
VectorCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Status

ProductReleasePackageStatus
Alpaquita Linux23 LTSgnupgNot affected (2.2.40-r0)
libgcryptNot affected (1.10.1-r0)
StreamgnupgNot affected (2.4.3-r1)
libgcryptNot affected (1.10.2-r2)

References

ON THIS PAGE