CVE-2013-4242
Description
GnuPG before 1.4.14, and Libgcrypt before 1.5.3 as used in GnuPG 2.0.x and possibly other products, allows local users to obtain private RSA keys via a cache side-channel attack involving the L3 cache, aka Flush+Reload.
Risk Information
Base Score
10.0
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.157
Associated Vulnerability
| Vulnerability | OS Platform |
|---|---|
| Multiple Vulnerabilities are affected in GnuPG for windows 1.4.0 | Windows |
| Multiple Vulnerabilities are affected in GnuPG for windows 2.0.8 | Windows |
| Multiple Vulnerabilities are affected in GnuPG for windows 2.0.1 | Windows |
| Multiple Vulnerabilities are affected in GnuPG for windows 2.0.10 | Windows |
| Multiple Vulnerabilities are affected in GnuPG for windows 2.0.11 | Windows |
| Multiple Vulnerabilities are affected in GnuPG for windows 2.0.12 | Windows |
| Multiple Vulnerabilities are affected in GnuPG for windows 2.0.13 | Windows |
| Multiple Vulnerabilities are affected in GnuPG for windows 2.0.14 | Windows |
| Multiple Vulnerabilities are affected in GnuPG for windows 2.0.15 | Windows |
| Multiple Vulnerabilities are affected in GnuPG for windows 2.0.16 | Windows |
| Multiple Vulnerabilities are affected in GnuPG for windows 2.0.3 | Windows |
| Multiple Vulnerabilities are affected in GnuPG for windows 2.0.4 | Windows |
| Multiple Vulnerabilities are affected in GnuPG for windows 2.0.5 | Windows |
| Multiple Vulnerabilities are affected in GnuPG for windows 2.0.6 | Windows |
| Multiple Vulnerabilities are affected in GnuPG for windows 2.0.7 | Windows |
| Multiple Vulnerabilities are affected in GnuPG for windows 1.4.10 | Windows |
| Multiple Vulnerabilities are affected in GnuPG for windows 1.4.11 | Windows |
| Multiple Vulnerabilities are affected in GnuPG for windows 1.4.12 | Windows |
| Multiple Vulnerabilities are affected in GnuPG for windows 2.0.17 | Windows |
| Multiple Vulnerabilities are affected in GnuPG for windows 2.0.18 | Windows |
| Multiple Vulnerabilities are affected in GnuPG for windows 2.0.19 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.0.0 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.2.15 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.2.16 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.2.17 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.2.18 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.2.19 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.3.0 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.3.1 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.3.2 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.3.3 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.3.4 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.3.5 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.4.0 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.4.1 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.4.3 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.4.4 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.4.5 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.9.0 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.9.1 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.9.10 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.9.11 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.9.2 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.9.3 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.9.4 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.9.5 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.9.6 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.9.7 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.9.8 | Windows |
| Vulnerabilities CVE-2013-4242 are affected in GnuPG for windows 0.9.9 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.0.0 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.0.1 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.0.2 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.0.3 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.0.6 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.0.7 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.2.0 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.2.1 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.2.2 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.2.3 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.2.4 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.2.5 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.2.6 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.2.7 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.3.0 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.3.1 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.3.2 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.3.3 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.3.4 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.3.6 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.3.90 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.3.91 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.3.92 | Windows |
| Vulnerabilities CVE-2013-4242,CVE-2013-4576,CVE-2014-4617 are affected in GnuPG for windows 1.3.93 | Windows |
| Multiple Vulnerabilities are affected in GnuPG for windows 1.4.13 | Windows |
| GNU privacy guard - a free PGP replacement (USN-1923-1) libgcrypt11_1.5.0-3ubuntu0.4_i386.deb | Linux |
| GNU privacy guard - a free PGP replacement (USN-1923-1) libgcrypt11_1.5.0-3ubuntu0.4_amd64.deb | Linux |
| gnupg security update(DSA-3184-1) gnupg_1.4.12-7+deb7u7_i386.deb | Linux |
| (RHSA-2013:1457) Moderate: libgcrypt security update libgcrypt-1.4.4-7.el5_10.i386.rpm | Linux |
| (RHSA-2013:1457) Moderate: libgcrypt security update libgcrypt-1.4.4-7.el5_10.x86_64.rpm | Linux |
| (RHSA-2013:1457) Moderate: libgcrypt security update libgcrypt-devel-1.4.4-7.el5_10.i386.rpm | Linux |
| (RHSA-2013:1457) Moderate: libgcrypt security update libgcrypt-devel-1.4.4-7.el5_10.x86_64.rpm | Linux |
| Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2013-4242) | NCM |
Patch Details
No records foundReferences
https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234