[Announce] Libgcrypt 1.7.8 released to fix CVE-2017-7526

Werner Koch wk at gnupg.org
Tue Jul 4 18:30:28 CEST 2017


On Tue,  4 Jul 2017 12:05, johanw at vulcan.xs4all.nl said:

> Is 1.4 vulnerable to this attack as well? I know it ows not use
> libgcrypt but I'm not sure about the vulnerability.

Maybe.  And probably also to a lot of other local side channel attacks.


Shalom-Salam,

   Werner

-- 
Die Gedanken sind frei.  Ausnahmen regelt ein Bundesgesetz.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 227 bytes
Desc: not available
URL: </pipermail/attachments/20170704/fb88ce86/attachment-0001.sig>


More information about the Gnupg-users mailing list