Lucene search

K
ciscoCiscoCISCO-SA-20060905-CVE-2007-5810
HistorySep 05, 2006 - 5:39 p.m.

OpenSSL RSA Signature Forgery Vulnerability

2006-09-0517:39:31
tools.cisco.com
16

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

0.093 Low

EPSS

Percentile

94.7%

OpenSSL versions 0.9.7j and prior and 0.9.8b and prior contain a vulnerability that could allow an unauthenticated, remote attacker to successfully pass a forged X.509 certificate.

The vulnerability could allow an unauthenticated, remote attacker to pass a forged Public-Key Cryptography Standards (PKCS)#1 Version 1.5 signature when signed by a certain type of RSA key. An attacker could exploit the vulnerability to access certificate-protected resources.

OpenSSL confirmed the vulnerability in a security advisory and released updated versions.

This vulnerability affects PKCS #1 v1.5 signatures if the exponent of the public key is 3, which is widely used by Certificate Authorities. An attacker will likely exploit this vulnerability to forge signatures without the secret key. PKCS #1 v1.5 is often utilized within X.509 certificates; therefore, all applications that use OpenSSL to verify X.509 certificates may be vulnerable, including software that uses OpenSSL for SSL or TLS.

Affected configurations

Vulners
Node
ciscoapplication_and_content_networking_system_softwareMatchany
OR
ciscocontent_services_switchMatchany
OR
ciscosecure_intrusion_detection_systemMatchany
OR
ciscoprime_access_registrarMatchany
OR
ciscogss_4480_global_site_selectorMatchany
OR
ciscounified_sip_proxyMatchany
OR
ciscociscoworks_common_servicesMatchany
OR
ciscociscoworks_common_management_foundationMatchany
OR
ciscomds_9000_san-osMatchany
OR
ciscosecurity_agentMatchany
OR
ciscocisco_ons_15454_system_softwareMatchany
OR
ciscopix_asa_idsMatchany
OR
ciscosecurity_monitoring_analysis_and_response_systemMatchany
OR
ciscounified_presence_serverMatchany
OR
ciscowide_area_application_servicesMatchany
OR
ciscowide_area_application_servicesMatchany
OR
ciscowireless_lan_controllerMatch4.0
OR
ciscounified_communications_managerMatchany
OR
ciscoapplication_and_content_networking_system_softwareMatchany
OR
ciscocontent_services_switchMatchany
OR
ciscosecure_intrusion_detection_systemMatchany
OR
ciscoprime_access_registrarMatchany
OR
ciscogss_4480_global_site_selectorMatchany
OR
ciscounified_sip_proxyMatchany
OR
ciscociscoworks_common_servicesMatchany
OR
ciscociscoworks_common_management_foundationMatchany
OR
ciscomds_9000_san-osMatchany
OR
ciscosecurity_agentMatchany
OR
ciscoonsMatch15454_system_software
OR
ciscopix_asa_idsMatchany
OR
ciscosecurity_monitoring_analysis_and_response_systemMatchany
OR
ciscounified_presence_serverMatchany
OR
ciscowide_area_application_servicesMatchany
OR
ciscowide_area_application_servicesMatchany
OR
ciscowireless_lan_controllerMatch4.0.196
OR
ciscounified_communications_managerMatchany

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

0.093 Low

EPSS

Percentile

94.7%