Lucene search

K
ubuntucveUbuntu.comUB:CVE-2016-7055
HistoryNov 11, 2016 - 12:00 a.m.

CVE-2016-7055

2016-11-1100:00:00
ubuntu.com
ubuntu.com
19

CVSS2

2.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:N/I:N/A:P

CVSS3

5.9

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS

0.008

Percentile

81.3%

There is a carry propagating bug in the Broadwell-specific Montgomery
multiplication procedure in OpenSSL 1.0.2 and 1.1.0 before 1.1.0c that
handles input lengths divisible by, but longer than 256 bits. Analysis
suggests that attacks against RSA, DSA and DH private keys are impossible.
This is because the subroutine in question is not used in operations with
the private key itself and an input of the attacker’s direct choice.
Otherwise the bug can manifest itself as transient authentication and key
negotiation failures or reproducible erroneous outcome of public-key
operations with specially crafted input. Among EC algorithms only Brainpool
P-512 curves are affected and one presumably can attack ECDH key
negotiation. Impact was not analyzed in detail, because pre-requisites for
attack are considered unlikely. Namely multiple clients have to choose the
curve in question and the server has to share the private key among them,
neither of which is default behaviour. Even then only clients that chose
the curve will be affected.

Notes

Author Note
mdeslaur only affects 1.0.2 and 1.1.0
OSVersionArchitecturePackageVersionFilename
ubuntu16.04noarchopenssl< 1.0.2g-1ubuntu4.6UNKNOWN
ubuntu16.10noarchopenssl< 1.0.2g-1ubuntu9.1UNKNOWN

CVSS2

2.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:N/I:N/A:P

CVSS3

5.9

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS

0.008

Percentile

81.3%