PT-2026-35461 · Julia · Libgcrypt Jll
Published
2026-04-17
·
Updated
2026-04-17
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Libgcrypt before 1.8.8 and 1.9.x before 1.9.3 mishandles ElGamal encryption because it lacks exponent blinding to address a side-channel attack against
mpi powm, and the window size is not chosen appropriately. This, for example, affects use of ElGamal in OpenPGP.Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Libgcrypt Jll