Related Vulnerabilities: CVE-2019-13627  

A vulnerability has been found in the ECDSA/EdDSA implementation of libgcrypt up to 1.8.4, allowing for practical recovery of the long-term private key.

Severity High

Remote Yes

Type Private key recovery

Description

A vulnerability has been found in the ECDSA/EdDSA implementation of libgcrypt up to 1.8.4, allowing for practical recovery of the long-term private key.

AVG-1045 lib32-libgcrypt 1.8.4-1 1.8.5-1 High Fixed

AVG-1044 libgcrypt 1.8.4-1 1.8.5-1 High Fixed

https://seclists.org/oss-sec/2019/q4/3
https://minerva.crocs.fi.muni.cz/