{"id":"CVE-2015-0837","details":"The mpi_powm function in Libgcrypt before 1.6.3 and GnuPG before 1.4.19 allows attackers to obtain sensitive information by leveraging timing differences when accessing a pre-computed table during modular exponentiation, related to a \"Last-Level Cache Side-Channel Attack.\"","modified":"2026-04-16T06:20:13.668255017Z","published":"2019-11-29T22:15:11Z","related":["SUSE-SU-2015:1511-1","SUSE-SU-2015:1626-1","openSUSE-SU-2024:10037-1"],"references":[{"type":"ADVISORY","url":"http://www.debian.org/security/2015/dsa-3184"},{"type":"ADVISORY","url":"http://www.debian.org/security/2015/dsa-3185"},{"type":"ADVISORY","url":"https://ieeexplore.ieee.org/document/7163050"},{"type":"ADVISORY","url":"https://lists.gnupg.org/pipermail/gnupg-announce/2015q1/000363.html"},{"type":"ADVISORY","url":"https://lists.gnupg.org/pipermail/gnupg-announce/2015q1/000364.html"},{"type":"ARTICLE","url":"https://lists.gnupg.org/pipermail/gnupg-announce/2015q1/000363.html"},{"type":"ARTICLE","url":"https://lists.gnupg.org/pipermail/gnupg-announce/2015q1/000364.html"}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N"}]}