auth.c in dhcpcd before 7.2.1 allowed attackers to infer secrets by performing latency attacks.
References
Configurations
History
21 Nov 2024, 04:21
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.securityfocus.com/bid/108090 - Third Party Advisory, VDB Entry | |
References | () https://roy.marples.name/archives/dhcpcd-discuss/0002415.html - Third Party Advisory | |
References | () https://roy.marples.name/git/dhcpcd.git/commit/?id=7121040790b611ca3fbc400a1bbcd4364ef57233 - Patch, Third Party Advisory | |
References | () https://roy.marples.name/git/dhcpcd.git/commit/?id=aee631aadeef4283c8a749c1caf77823304acf5e - Patch, Third Party Advisory | |
References | () https://roy.marples.name/git/dhcpcd.git/commit/?id=cfde89ab66cb4e5957b1c4b68ad6a9449e2784da - Third Party Advisory |
Information
Published : 2019-04-28 16:29
Updated : 2024-11-21 04:21
NVD link : CVE-2019-11578
Mitre link : CVE-2019-11578
CVE.ORG link : CVE-2019-11578
JSON object : View
Products Affected
dhcpcd_project
- dhcpcd
CWE
CWE-203
Observable Discrepancy