PT-2023-4553 · Openssl+8 · Openssl+8

Juerg Wullschleger

+1

·

Published

2023-07-07

·

Updated

2026-04-27

·

CVE-2023-2975

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions OpenSSL (affected versions not specified)
Description The AES-SIV cipher implementation in OpenSSL contains a bug that causes it to ignore empty associated data entries, which are unauthenticated as a consequence. This issue can mislead applications that use the AES-SIV algorithm and want to authenticate empty data entries as associated data by removing, adding, or reordering such empty entries. The AES-SIV algorithm allows for authentication of multiple associated data entries along with the encryption. To authenticate empty data, the application has to call EVP EncryptUpdate() (or EVP CipherUpdate()) with a NULL pointer as the output buffer and 0 as the input buffer length. However, the AES-SIV implementation in OpenSSL just returns success for such a call instead of performing the associated data authentication operation. The empty data thus will not be authenticated. This issue does not affect non-empty associated data authentication, and it is expected to be rare for an application to use empty associated data entries.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Improper Authentication

Weakness Enumeration

Related Identifiers

ALSA-2024:2447
ALT-PU-2023-4667
AZL-47652
BDU:2023-04959
CVE-2023-2975
INFSA-2024_2447
JLSEC-2026-240
MGASA-2023-0253
MGASA-2023-0273
OPENSUSE-SU-2023_3011-1
OPENSUSE-SU-2023_3013-1
OPENSUSE-SU-2024:13065-1
RHSA-2024:2447
RHSA-2024_2447
SUSE-SU-2023:3011-1
SUSE-SU-2023:3013-1
SUSE-SU-2023_3011-1
SUSE-SU-2023_3013-1
USN-6450-1

Affected Products

Alt Linux
Almalinux
Ibm Aix
Linuxmint
Openssl
Red Hat
Red Os
Suse
Ubuntu