PT-2016-1362 · Openssl+8 · Openssl+9

Nimrod Aviram

+1

·

Published

2016-03-01

·

Updated

2024-06-15

·

CVE-2016-0800

CVSS v3.1

5.9

Medium

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions OpenSSL versions prior to 1.0.1s OpenSSL versions prior to 1.0.2g
Description The issue is related to the SSLv2 protocol, which requires a server to send a ServerVerify message before establishing that a client possesses certain plaintext RSA data. This makes it easier for remote attackers to decrypt TLS ciphertext data by leveraging a Bleichenbacher RSA padding oracle, also known as a "DROWN" attack. The vulnerability can be exploited by capturing packets or acting as a man-in-the-middle to obtain SSL session keys, decrypt encrypted traffic, and obtain users' sensitive information. Additionally, a side-channel attack was found that could lead to the recovery of RSA keys due to cache-bank conflicts on the Intel Sandy-Bridge microarchitecture.
Recommendations For OpenSSL versions prior to 1.0.1s, update to version 1.0.1s or later to resolve the issue. For OpenSSL versions prior to 1.0.2g, update to version 1.0.2g or later to resolve the issue. As a temporary workaround, consider disabling the use of the SSLv2 protocol until a patch is available. Restrict access to sensitive information and encrypted traffic to minimize the risk of exploitation.

Exploit

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2016-1184
BDU:2016-00661
CESA-2016_0301
CESA-2016_0372
CVE-2016-0800
DSA-3500-1
OPENSUSE-SU-2016_0627-1
OPENSUSE-SU-2016_0628-1
OPENSUSE-SU-2016_0640-1
OPENSUSE-SU-2016_0720-1
OPENSUSE-SU-2016_1241-1
OPENSUSE-SU-2024:10271-1
OPENSUSE-SU-2024:10529-1
OPENSUSE-SU-2024:11127-1
RHSA-2016:0301
RHSA-2016:0302
RHSA-2016:0303
RHSA-2016:0304
RHSA-2016:0305
RHSA-2016:0306
RHSA-2016:0372
RHSA-2016:0379
RHSA-2016_0301
RHSA-2016_0302
RHSA-2016_0372
SUSE-FU-2022:0445-1
SUSE-SU-2016:0617-1
SUSE-SU-2016:0620-1
SUSE-SU-2016:0621-1
SUSE-SU-2016:0624-1
SUSE-SU-2016:0631-1
SUSE-SU-2016:0641-1
SUSE-SU-2016:0748-1
SUSE-SU-2016:0778-1
SUSE-SU-2016:0786-1
SUSE-SU-2016:1057-1

Affected Products

Alt Linux
Centos
Cisco Nexus
Cisco Wls
Freebsd
Huawei Vrp
Ibm Aix
Openssl
Red Hat
Suse