Security Advisory

CVE-2018-10846

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-08-22 13:00:00
Last updated 2024-08-05 07:46:47
Assigner redhat
State PUBLISHED

Description

A cache-based side channel in GnuTLS implementation that leads to plain text recovery in cross-VM attack setting was found. An attacker could use a combination of "Just in Time" Prime+probe attack in combination with Lucky-13 attack to recover plain text using crafted packets.