USN-5080-1: Libgcrypt vulnerabilities
16 September 2021
Libgcrypt could be made to expose sensitive information.
- libgcrypt20 - LGPL Crypto library
It was discovered that Libgcrypt incorrectly handled ElGamal encryption. An
attacker could possibly use this issue to recover sensitive information.
The problem can be corrected by updating your system to the following package versions:
In general, a standard system update will make all the necessary changes.
- USN-5080-2: libgcrypt20-dev, libgcrypt11-dev, libgcrypt20, libgcrypt20-doc