Hubert Kario discovered a timing side channel in the RSA decryption implementation of the GNU TLS library. For the stable distribution (bullseye), this problem has been fixed in version 3.7.1-5+deb11u3. We recommend that you upgrade your gnutls28 packages. For the detailed security status of gnutls28 please refer to its security tracker page at: https://security-tracker.debian.org/tracker/gnutls28
Hubert Kario discovered a timing side channel in the RSA decryption implementation of the GNU TLS library.
For the stable distribution (bullseye), this problem has been fixed in version 3.7.1-5+deb11u3.
We recommend that you upgrade your gnutls28 packages.
For the detailed security status of gnutls28 please refer to its security tracker page at: https://security-tracker.debian.org/tracker/gnutls28