CVE-2023-5981 | GNU GnuTLS up to 3.8.1 RSA-PSK lib/auth/rsa_psk.c _gnutls_proc_rsa_psk_client_kx timing discrepancy (Nessus ID 210127)
A vulnerability was found in GNU GnuTLS up to 3.8.1. It has been rated as problematic. Affected by this issue is the function _gnutls_proc_rsa_psk_client_kx in the library lib/auth/rsa_psk.c of the component RSA-PSK Handler. The manipulation leads to observable timing discrepancy.
This vulnerability is handled as CVE-2023-5981. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.