CVE-2019-13627 log
| Source |
|
| Severity | High |
| Remote | Yes |
| Type | Private key recovery |
| Description | A vulnerability has been found in the ECDSA/EdDSA implementation of libgcrypt up to 1.8.4, allowing for practical recovery of the long-term private key. |
| Group | Package | Affected | Fixed | Severity | Status | Ticket |
|---|---|---|---|---|---|---|
| AVG-1045 | lib32-libgcrypt | 1.8.4-1 | 1.8.5-1 | High | Fixed | |
| AVG-1044 | libgcrypt | 1.8.4-1 | 1.8.5-1 | High | Fixed |
| References |
|---|
https://seclists.org/oss-sec/2019/q4/3 https://minerva.crocs.fi.muni.cz/ |