Security update for libgcrypt
This update for libgcrypt fixes the following issues:
Security issues fixed:
- CVE-2019-13627: Mitigation against an ECDSA timing attack (bsc#1148987).
Bug fixes:
- Added CMAC AES self test (bsc#1155339).
- Added CMAC TDES self test missing (bsc#1155338).
- Fix test dsa-rfc6979 in FIPS mode.
This update was imported from the SUSE:SLE-15-SP1:Update update project.
-
Submitted by
Pedro Monreal Gonzalez (pmonrealgonzalez)
Fixed bugs
bnc#1155338
FIPS: libgcrypt: CMAC TDES self test missing
bnc#1155339
FIPS: libgcrypt: CMAC AES self test missing
bnc#1148987
VUL-0: CVE-2019-13627: libgcrypt: mitigation against an ECDSA timing attack