CVE-2019-13627 - log back

CVE-2019-13627 created at 13 Oct 2019 14:27:58
Severity
+ High
Remote
+ Remote
Type
+ Private key recovery
Description
+ A vulnerability has been found in the ECDSA/EdDSA implementation of libgcrypt up to 1.8.4, allowing for practical recovery of the long-term private key.
References
+ https://seclists.org/oss-sec/2019/q4/3
+ https://minerva.crocs.fi.muni.cz/
Notes