It was found that the GnuTLS implementation of HMAC-SHA-384 was vulnerable to a Lucky thirteen style attack. Remote attackers could use this flaw to conduct distinguishing attacks and plain text recovery attacks via statistical analysis of timing data using crafted packets.
Metrics
Affected Vendors & Products
References
History
Sat, 12 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|

Status: PUBLISHED
Assigner: redhat
Published: 2018-08-22T13:00:00
Updated: 2024-08-05T07:46:47.470Z
Reserved: 2018-05-09T00:00:00
Link: CVE-2018-10845

No data.

Status : Modified
Published: 2018-08-22T13:29:00.440
Modified: 2024-11-21T03:42:07.753
Link: CVE-2018-10845
