Security Advisory

CVE-2018-10844

5.9
MEDIUM

Vulnerability Description

It was found that the GnuTLS implementation of HMAC-SHA-256 was vulnerable to a Lucky thirteen style attack. Remote attackers could use this flaw to conduct distinguishing attacks and plaintext-recovery attacks via statistical analysis of timing data using crafted packets.
Published Date August 22, 2018
Official Source NIST NVD Advisory