Security Advisory
CVE-2018-10846
5.6
MEDIUM
Vulnerability Description
A cache-based side channel in GnuTLS implementation that leads to plain text recovery in cross-VM attack setting was found. An attacker could use a combination of "Just in Time" Prime+probe attack in combination with Lucky-13 attack to recover plain text using crafted packets.
Published Date
August 22, 2018
Official Source
NIST NVD Advisory