Bug 1654929 (CVE-2018-16868)

Summary: CVE-2018-16868 gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification
Product: [Other] Security Response Reporter: Sam Fowler <sfowler>
Component: vulnerabilityAssignee: Red Hat Product Security <security-response-team>
Status: CLOSED ERRATA QA Contact:
Severity: medium Docs Contact:
Priority: medium    
Version: unspecifiedCC: abhgupta, ansasaki, bmcclain, dbaker, dfediuck, eedri, erik-fedora, jokerman, jv+fedora, mgoldboi, michal.skrivanek, mike, pspacek, rh-spice-bugs, rjones, sbonazzo, security-response-team, sherold, slawomir, ssorce, sthangav, trankin
Target Milestone: ---Keywords: Security
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: If docs needed, set a value
Doc Text:
A Bleichenbacher type side-channel based padding oracle attack was found in the way gnutls handles verification of RSA decrypted PKCS#1 v1.5 data. An attacker who is able to run a process on the same physical core as the victim process could use this to extract plain text or, in some cases, downgrade any TLS connections to a vulnerable server.
Story Points: ---
Clone Of: Environment:
Last Closed: 2021-10-25 22:22:05 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On: 1655389, 1655390, 1655391, 1655392, 1655394, 1655395, 1655396, 1659095    
Bug Blocks: 1649548    

Description Sam Fowler 2018-11-30 03:52:03 UTC
GnuTLS is vulnerable to Bleichenbacher-like side channel leakage in PKCS#1 1.5 verificati on and padding oracle verification.

Comment 1 Huzaifa S. Sidhpurwala 2018-12-03 04:51:44 UTC
External References:

http://cat.eyalro.net/

Comment 2 Huzaifa S. Sidhpurwala 2018-12-03 04:52:33 UTC
Created gnutls tracking bugs for this issue:

Affects: fedora-all [bug 1655389]


Created gnutls30 tracking bugs for this issue:

Affects: epel-6 [bug 1655391]


Created mingw-gnutls tracking bugs for this issue:

Affects: epel-7 [bug 1655392]
Affects: fedora-all [bug 1655390]