Oval Definition:oval:org.opensuse.security:def:88598
Revision Date:2018-11-23Version:1
Title:Security update for libgcrypt (Moderate)
Description:

This update for libgcrypt fixes the following issues:

The following security vulnerability was addressed:

- CVE-2018-0495: Mitigate a novel side-channel attack by enabling blinding for ECDSA signatures (bsc#1097410).

The following other issues were fixed:

- Extended the fipsdrv dsa-sign and dsa-verify commands with the --algo parameter for the FIPS testing of DSA SigVer and SigGen (bsc#1064455). - Ensure libgcrypt20-hmac and libgcrypt20 are installed in the correct order. (bsc#1090766)
Family:unixClass:patch
Status:Reference(s):1064455
1090766
1097410
CVE-2018-0495
SUSE-SU-2018:2452-2
Platform(s):SUSE Linux Enterprise Server 12 SP4
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • libgcrypt20-1.6.1-16.62.1 is installed
  • OR libgcrypt20-32bit-1.6.1-16.62.1 is installed
  • OR libgcrypt20-hmac-1.6.1-16.62.1 is installed
  • OR libgcrypt20-hmac-32bit-1.6.1-16.62.1 is installed
  • BACK