CVE-2016-6313 describes a weakness in the random number generator's mixing functions within Libgcrypt (versions before 1.5.6, 1.6.6, and 1.7.3) and GnuPG (before 1.4.21). This flaw allows attackers to deduce 160 bits of the random number generator's state by observing 4640 bits of previous output. Rated as Medium severity (CVSS 5.3), this vulnerability has a low attack complexity and requires no user interaction, making it easily exploitable over a network. The primary impact is a potential loss of confidentiality, as cryptographic keys or other sensitive data relying on the compromised random number generator could be exposed. Currently, there is no evidence of active exploitation, nor are public exploit codes available in Metasploit, Nuclei, or ExploitDB. Despite limited community discussion and media coverage, the vulnerability has been publicly disclosed and patched by affected vendors like Canonical and Debian.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 1.5.3CPE matchmatch criteria | cpe:2.3:a:gnupg:libgcrypt:*:*:*:*:*:*:*:* | ||
1.6.0CPE matchmatch criteria | cpe:2.3:a:gnupg:libgcrypt:1.6.0:*:*:*:*:*:*:* | ||
1.6.1CPE matchmatch criteria | cpe:2.3:a:gnupg:libgcrypt:1.6.1:*:*:*:*:*:*:* | ||
1.6.2CPE matchmatch criteria | cpe:2.3:a:gnupg:libgcrypt:1.6.2:*:*:*:*:*:*:* | ||
1.6.3CPE matchmatch criteria | cpe:2.3:a:gnupg:libgcrypt:1.6.3:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.