A vulnerability was found that the response times to malformed ciphertexts in RSA-PSK ClientKeyExchange differ from response times of ciphertexts with correct PKCS#1 v1.5 padding.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
History
25 Mar 2026, 20:01
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://access.redhat.com/errata/RHSA-2024:0155 - Third Party Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2024:0319 - Third Party Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2024:0399 - Third Party Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2024:0451 - Third Party Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2024:0533 - Third Party Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2024:1383 - Third Party Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2024:2094 - Third Party Advisory | |
| References | () https://access.redhat.com/security/cve/CVE-2023-5981 - Vendor Advisory, Third Party Advisory | |
| References | () http://www.openwall.com/lists/oss-security/2024/01/19/3 - Third Party Advisory | |
| References | () https://lists.debian.org/debian-lts-announce/2023/11/msg00016.html - Third Party Advisory | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/7ZEIOLORQ7N6WRPFXZSYDL2MC4LP7VFV/ - Broken Link | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GNXKVR5YNUEBNHAHM5GSYKBZX4W2HMN2/ - Broken Link | |
| CPE | cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:* cpe:2.3:a:gnu:gnutls:*:*:*:*:*:*:*:* |
|
| First Time |
Debian debian Linux
Debian |
25 Feb 2026, 19:29
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-208 |
04 Nov 2025, 20:17
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
21 Nov 2024, 08:42
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
|
| References | () https://access.redhat.com/errata/RHSA-2024:0155 - | |
| References | () https://access.redhat.com/errata/RHSA-2024:0319 - | |
| References | () https://access.redhat.com/errata/RHSA-2024:0399 - | |
| References | () https://access.redhat.com/errata/RHSA-2024:0451 - | |
| References | () https://access.redhat.com/errata/RHSA-2024:0533 - | |
| References | () https://access.redhat.com/errata/RHSA-2024:1383 - | |
| References | () https://access.redhat.com/errata/RHSA-2024:2094 - | |
| References | () https://access.redhat.com/security/cve/CVE-2023-5981 - Vendor Advisory | |
| References | () https://bugzilla.redhat.com/show_bug.cgi?id=2248445 - Issue Tracking, Third Party Advisory | |
| References | () https://gnutls.org/security-new.html#GNUTLS-SA-2023-10-23 - Issue Tracking, Vendor Advisory |
16 Sep 2024, 13:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
08 Jul 2024, 18:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
27 Jun 2024, 12:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
09 Feb 2024, 03:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
29 Jan 2024, 16:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
29 Jan 2024, 07:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
25 Jan 2024, 18:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
22 Jan 2024, 15:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
19 Jan 2024, 21:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
10 Jan 2024, 21:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
04 Dec 2023, 19:40
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-203 | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.9 |
| CPE | cpe:2.3:o:redhat:linux:8.0:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:* cpe:2.3:o:redhat:linux:9.0:*:*:*:*:*:*:* cpe:2.3:a:gnu:gnutls:1.5.0:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:* |
|
| First Time |
Gnu
Redhat Gnu gnutls Redhat linux Fedoraproject Fedoraproject fedora |
|
| References | () https://gnutls.org/security-new.html#GNUTLS-SA-2023-10-23 - Issue Tracking, Vendor Advisory | |
| References | () https://access.redhat.com/security/cve/CVE-2023-5981 - Vendor Advisory | |
| References | () https://bugzilla.redhat.com/show_bug.cgi?id=2248445 - Issue Tracking, Third Party Advisory |
28 Nov 2023, 14:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
28 Nov 2023, 12:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2023-11-28 12:15
Updated : 2026-03-25 20:01
NVD link : CVE-2023-5981
Mitre link : CVE-2023-5981
CVE.ORG link : CVE-2023-5981
JSON object : View
Products Affected
debian
- debian_linux
fedoraproject
- fedora
gnu
- gnutls
redhat
- linux
