Lucene search

K
osvGoogleOSV:GO-2022-0531
HistoryJul 28, 2022 - 5:24 p.m.

Session tickets lack random ticket_age_add in crypto/tls

2022-07-2817:24:57
Google
osv.dev
24
session tickets
randomization
crypto/tls
tls handshakes
session resumption
security vulnerability
software

CVSS3

3.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

AI Score

7

Confidence

Low

EPSS

0.001

Percentile

49.9%

An attacker can correlate a resumed TLS session with a previous connection.

Session tickets generated by crypto/tls do not contain a randomly generated ticket_age_add, which allows an attacker that can observe TLS handshakes to correlate successive connections by comparing ticket ages during session resumption.

CVSS3

3.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

AI Score

7

Confidence

Low

EPSS

0.001

Percentile

49.9%