Security Advisory

CVE-2018-10846

5.6
MEDIUM

Vulnerability Description

A cache-based side channel in GnuTLS implementation that leads to plain text recovery in cross-VM attack setting was found. An attacker could use a combination of "Just in Time" Prime+probe attack in combination with Lucky-13 attack to recover plain text using crafted packets.
Published Date August 22, 2018
Official Source NIST NVD Advisory