﻿id	summary	reporter	owner	description	type	status	priority	milestone	component	version	severity	resolution	keywords	cc
7444	libgcrypt-1.6.5	Fernando de Oliveira	Fernando de Oliveira	" == Security fix ==

'''CVE-2015-7511'''

[https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-7511]

Details:

[https://www.cs.tau.ac.il/~tromer/ecdh/]



[ftp://ftp.gnupg.org/gcrypt/libgcrypt/libgcrypt-1.6.5.tar.bz2]

[ftp://ftp.gnupg.org/gcrypt/libgcrypt/libgcrypt-1.6.5.tar.bz2.sig]


[http://git.gnupg.org/cgi-bin/gitweb.cgi?p=libgcrypt.git;a=blob;f=NEWS;h=492344ac61dcbf4659377e93f078e16ee57125e0;hb=refs/tags/libgcrypt-1.6.5]

or ""plain""

[http://git.gnupg.org/cgi-bin/gitweb.cgi?p=libgcrypt.git;a=blob_plain;f=NEWS;hb=refs/tags/libgcrypt-1.6.5]

{{{
Noteworthy changes in version 1.6.5 (2016-02-09) [C20/A0/R5]
------------------------------------------------

 * Mitigate side-channel attack on ECDH with Weierstrass curves
   [CVE-2015-7511].  See http://www.cs.tau.ac.IL/~tromer/ecdh/ for
   details.

 * Fix build problem on Solaris.
}}}"	enhancement	closed	high	7.9	BOOK	SVN	medium	fixed		
