{ "schema_version": "1.4.0", "id": "GHSA-wmp8-c7xc-v29x", "modified": "2022-05-24T16:44:49Z", "published": "2022-05-24T16:44:49Z", "aliases": [ "CVE-2019-11578" ], "details": "auth.c in dhcpcd before 7.2.1 allowed attackers to infer secrets by performing latency attacks.", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-11578" }, { "type": "WEB", "url": "https://roy.marples.name/archives/dhcpcd-discuss/0002415.html" }, { "type": "WEB", "url": "https://roy.marples.name/git/dhcpcd.git/commit/?id=7121040790b611ca3fbc400a1bbcd4364ef57233" }, { "type": "WEB", "url": "https://roy.marples.name/git/dhcpcd.git/commit/?id=aee631aadeef4283c8a749c1caf77823304acf5e" }, { "type": "WEB", "url": "https://roy.marples.name/git/dhcpcd.git/commit/?id=cfde89ab66cb4e5957b1c4b68ad6a9449e2784da" }, { "type": "WEB", "url": "http://www.securityfocus.com/bid/108090" } ], "database_specific": { "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2019-04-28T16:29:00Z" } }