Bug 1654930 (CVE-2018-16869)

Summary: CVE-2018-16869 nettle: Leaky data conversion exposing a manager oracle
Product: [Other] Security Response Reporter: Sam Fowler <sfowler>
Component: vulnerabilityAssignee: Red Hat Product Security <security-response-team>
Status: CLOSED ERRATA QA Contact:
Severity: medium Docs Contact:
Priority: medium    
Version: unspecifiedCC: abhgupta, bmcclain, crypto-team, dbaker, dfediuck, dueno, dwmw2, eedri, jokerman, mgoldboi, michal.skrivanek, mike, rh-spice-bugs, sardella, sbonazzo, security-response-team, sherold, ssorce, sthangav, trankin
Target Milestone: ---Keywords: Security
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: If docs needed, set a value
Doc Text:
A Bleichenbacher type side-channel based padding oracle attack was found in the way nettle handles endian conversion of RSA decrypted PKCS#1 v1.5 data. An attacker who is able to run a process on the same physical core as the victim process could use this flaw extract plain text or, in some cases, downgrade any TLS connections to a vulnerable server.
Story Points: ---
Clone Of: Environment:
Last Closed: 2021-10-25 22:22:10 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On: 1655397, 1655398, 1655399, 1655400, 1655401, 1655402, 1655403, 1658603    
Bug Blocks: 1649548    

Description Sam Fowler 2018-11-30 04:00:44 UTC
Nettle is vulnerable to leaky data conversion exposing a manager oracle.

Comment 1 Huzaifa S. Sidhpurwala 2018-12-03 05:02:14 UTC
External References:

http://cat.eyalro.net/

Comment 2 Huzaifa S. Sidhpurwala 2018-12-03 05:07:07 UTC
Created mingw-nettle tracking bugs for this issue:

Affects: epel-7 [bug 1655400]
Affects: fedora-all [bug 1655398]


Created nettle tracking bugs for this issue:

Affects: epel-6 [bug 1655399]
Affects: fedora-all [bug 1655397]