The Miller-Rabin primality check in Botan before 1.10.8 and 1.11.x before 1.11.9 improperly uses a single random base, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via a DH group.
References
Link | Resource |
---|---|
http://marc.info/?l=botan-devel&m=139717503205066&w=2 | Vendor Advisory |
http://botan.randombit.net/security.html | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2016-05-13 07:59
Updated : 2016-05-16 07:46
NVD link : CVE-2014-9742
Mitre link : CVE-2014-9742
JSON object : View
CWE
CWE-310
Cryptographic Issues
Products Affected
botan_project
- botan