[Secure-testing-commits] r47877 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Jan 10 16:31:33 UTC 2017


Author: carnil
Date: 2017-01-10 16:31:33 +0000 (Tue, 10 Jan 2017)
New Revision: 47877

Modified:
   data/CVE/list
Log:
Add CVE-2016-7056

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-01-10 16:07:04 UTC (rev 47876)
+++ data/CVE/list	2017-01-10 16:31:33 UTC (rev 47877)
@@ -19886,8 +19886,11 @@
 	RESERVED
 CVE-2016-7057
 	RESERVED
-CVE-2016-7056
+CVE-2016-7056 [ECDSA P-256 timing attack key recovery]
 	RESERVED
+	- openssl <undetermined>
+	- openssl1.0 <undetermined>
+	NOTE: https://eprint.iacr.org/2016/1195.pdf
 CVE-2016-7055 [Montgomery multiplication may produce incorrect results]
 	RESERVED
 	- openssl 1.1.0c-1 (low)




More information about the Secure-testing-commits mailing list