PT-2024-29681 · Openssl+2 · Openssl+2

Published

2024-08-25

·

Updated

2026-01-24

·

CVE-2024-41996

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions OpenSSL versions 1.x through 1.1.1 OpenSSL versions 3.x through 3.0.5 OpenSSL versions prior to 17.0.5
Description Validating the order of the public keys in the Diffie-Hellman Key Agreement Protocol, when an approved safe prime is used, allows remote attackers to trigger unnecessarily expensive server-side DHE modular-exponentiation calculations. The client may cause asymmetric resource consumption. The basic attack scenario is that the client must claim that it can only communicate with DHE, and the server must be configured to allow DHE and validate the order of the public key.
Recommendations Upgrade to OpenSSL 1.1.1 or 3.0.5 to mitigate risks. If you're using versions below 17.0.5, upgrade to 17.0.5 to mitigate risks. As a temporary workaround, consider restricting the use of the Diffie-Hellman Key Agreement Protocol until a patch is available. Patch systems and monitor resource usage to prevent system performance degradation.

Fix

Resource Exhaustion

Improper Certificate Validation

Weakness Enumeration

Related Identifiers

BDU:2025-11398
CVE-2024-41996
OESA-2025-2325
OESA-2025-2326
OESA-2025-2327
OPENSUSE-SU-2024:14366-1
OPENSUSE-SU-2024_3500-1
OPENSUSE-SU-2024_3501-1
OPENSUSE-SU-2024_3525-1
OPENSUSE-SU-2024_3766-1
SUSE-SU-2024:3500-1
SUSE-SU-2024:3501-1
SUSE-SU-2024:3525-1
SUSE-SU-2024:3766-1
SUSE-SU-2024:3871-1
SUSE-SU-2024_3500-1
SUSE-SU-2024_3501-1
SUSE-SU-2024_3525-1
SUSE-SU-2025:20081-1

Affected Products

Openssl
Red Os
Suse