CVE-2021-40529

MEDIUMCVSS 5.9/10EPSS 1.48%

Last modified

CVE-2021-40529 is a medium-severity vulnerability rated 5.9/10 on the CVSS scale. The ElGamal implementation in Botan through 2.18.1, as used in Thunderbird and other products, allows plaintext recovery because, during interaction between two cryptographic libraries, a certain dangerous combination of the prime defined by the receiver's public key, the generator defined by the receiver's public key, and the sender's ephemeral exponents can lead to a cross-configuration attack against OpenPGP.. EPSS estimates a 1.48% chance of exploitation in the next 30 days.

Description

The ElGamal implementation in Botan through 2.18.1, as used in Thunderbird and other products, allows plaintext recovery because, during interaction between two cryptographic libraries, a certain dangerous combination of the prime defined by the receiver's public key, the generator defined by the receiver's public key, and the sender's ephemeral exponents can lead to a cross-configuration attack against OpenPGP.

Metrics

CVSS 3.1
5.9/10

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N

EPSS Probability
1.48%

70.7th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
Botan ProjectBotan<= 2.18.1
FedoraprojectFedora34
FedoraprojectFedora35
MozillaThunderbird< 91.12.0

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2021-40529?
The ElGamal implementation in Botan through 2.18.1, as used in Thunderbird and other products, allows plaintext recovery because, during interaction between two cryptographic libraries, a certain dangerous combination of the prime defined by the receiver's public key, the generator defined by the receiver's public key, and the sender's ephemeral exponents can lead to a cross-configuration attack against OpenPGP.
How severe is CVE-2021-40529?
CVE-2021-40529 has a CVSS score of 5.9/10 (MEDIUM severity). The EPSS model estimates a 1.48% probability of exploitation in the next 30 days.
How do I fix CVE-2021-40529?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2021-40529?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST