|
|
| |
|
| |
openssl: private key disclosure
| Package(s): | openssl |
CVE #(s): | CVE-2011-4354
|
| Created: | January 16, 2012 |
Updated: | January 18, 2012 |
| Description: |
From the Debian advisory:
On 32-bit systems, the operations on NIST elliptic curves
P-256 and P-384 are not correctly implemented, potentially
leaking the private ECC key of a TLS server. (Regular
RSA-based keys are not affected by this vulnerability.) |
| Alerts: |
|
( Log in to post comments)
|
|
|