openSUSE Security Update : libgcrypt (openSUSE-SU-2014:1058-1)
Medium Nessus Plugin ID 77365
SynopsisThe remote openSUSE host is missing a security update.
Descriptionlibgcrypt was updated to 1.5.4 to prevent a side-channel attack on Elgamal encryption subkeys.
Besides that the following issues were resolved :
- Improved performance of RSA, DSA, and Elgamal by using a new exponentiation algorithm.
- Fixed a subtle bug in mpi_set_bit which could set spurious bits.
- Fixed a bug in an internal division function.
SolutionUpdate the affected libgcrypt packages.