ALAS2-2018-1120


Amazon Linux 2 Security Advisory: ALAS-2018-1120
Advisory Release Date: 2018-12-06 20:25 Pacific
Advisory Updated Date: 2018-12-08 01:50 Pacific
Severity: Medium

Issue Overview:

It was found that GnuTLS's implementation of HMAC-SHA-256 was vulnerable to Lucky Thirteen-style attack. A remote attacker could use this flaw to conduct distinguishing attacks and plain text recovery attacks via statistical analysis of timing data using crafted packets.(CVE-2018-10844)

It was found that GnuTLS's implementation of HMAC-SHA-384 was vulnerable to a Lucky Thirteen-style attack. A remote attacker could use this flaw to conduct distinguishing attacks and plain text recovery attacks via statistical analysis of timing data using crafted packets.(CVE-2018-10845)

A cache-based side channel attack was found in the way GnuTLS implements CBC-mode cipher suites. An attacker could use a combination of "Just in Time" Prime+probe and Lucky-13 attacks to recover plain text in a cross-VM attack scenario.(CVE-2018-10846)


Affected Packages:

gnutls


Note:

This advisory is applicable to Amazon Linux 2 (AL2) Core repository. Visit this FAQ section for the difference between AL2 Core and AL2 Extras advisories.


Issue Correction:
Run yum update gnutls to update your system.

New Packages:
aarch64:
    gnutls-3.3.29-8.amzn2.aarch64
    gnutls-c++-3.3.29-8.amzn2.aarch64
    gnutls-devel-3.3.29-8.amzn2.aarch64
    gnutls-utils-3.3.29-8.amzn2.aarch64
    gnutls-dane-3.3.29-8.amzn2.aarch64
    gnutls-debuginfo-3.3.29-8.amzn2.aarch64

i686:
    gnutls-3.3.29-8.amzn2.i686
    gnutls-c++-3.3.29-8.amzn2.i686
    gnutls-devel-3.3.29-8.amzn2.i686
    gnutls-utils-3.3.29-8.amzn2.i686
    gnutls-dane-3.3.29-8.amzn2.i686
    gnutls-debuginfo-3.3.29-8.amzn2.i686

src:
    gnutls-3.3.29-8.amzn2.src

x86_64:
    gnutls-3.3.29-8.amzn2.x86_64
    gnutls-c++-3.3.29-8.amzn2.x86_64
    gnutls-devel-3.3.29-8.amzn2.x86_64
    gnutls-utils-3.3.29-8.amzn2.x86_64
    gnutls-dane-3.3.29-8.amzn2.x86_64
    gnutls-debuginfo-3.3.29-8.amzn2.x86_64