It was found that the GnuTLS implementation of HMAC-SHA-384 was vulnerable to a Lucky thirteen style attack. Remote attackers could use this flaw to conduct distinguishing attacks and plain text recovery attacks via statistical analysis of timing data using crafted packets.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: redhat

Published: 2018-08-22T13:00:00

Updated: 2020-05-08T05:06:08

Reserved: 2018-05-09T00:00:00


Link: CVE-2018-10845

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2018-08-22T13:29:00.440

Modified: 2023-02-13T04:50:30.000


Link: CVE-2018-10845

JSON object: View

cve-icon Redhat Information

No data.