Overview
Some implementations of SSL/TLS accept export-grade (512-bit or smaller) RSA keys even when not specifically requesting export grade ciphers. An attacker able to act as a Man-in-The-Middle (MiTM) could factor weak temporary RSA keys, obtain session keys, and decrypt SSL/TLS trafflc. This issue has been dubbed the "FREAK" (Factoring Attack on RSA-EXPORT Keys) attack.
Description
CWE-757: Selection of Less-Secure Algorithm During Negotiation ('Algorithm Downgrade') CWE-326: Inadequate Encryption Strength |
Impact
The weak 512-bit "export grade" RSA keys can be factored to allow an attacker to decrypt information encrypted with these keys. |
Solution
Update SSL/TLS libraries and applications |
Vendor Information (Learn More)
Vendor | Status | Date Notified | Date Updated |
---|---|---|---|
Apple | Affected | 05 Mar 2015 | 06 Mar 2015 |
Affected | 05 Mar 2015 | 06 Mar 2015 | |
Microsoft Corporation | Affected | 05 Mar 2015 | 10 Mar 2015 |
OpenSSL | Affected | 05 Mar 2015 | 06 Mar 2015 |
Opera | Affected | - | 06 Mar 2015 |
Research in Motion (RIM) | Affected | - | 06 Mar 2015 |
Botan | Not Affected | 05 Mar 2015 | 06 Mar 2015 |
Cryptlib | Not Affected | 05 Mar 2015 | 09 Mar 2015 |
GnuTLS | Not Affected | 05 Mar 2015 | 06 Mar 2015 |
Legion of the Bouncy Castle | Not Affected | 05 Mar 2015 | 09 Mar 2015 |
Apache-SSL | Unknown | 05 Mar 2015 | 05 Mar 2015 |
Attachmate | Unknown | 05 Mar 2015 | 05 Mar 2015 |
Certicom | Unknown | 05 Mar 2015 | 05 Mar 2015 |
Crypto++ Library | Unknown | 05 Mar 2015 | 05 Mar 2015 |
EMC Corporation | Unknown | 05 Mar 2015 | 05 Mar 2015 |
If you are a vendor and your product is affected, let us know.View More »
CVSS Metrics (Learn More)
Group | Score | Vector |
---|---|---|
Base | 7.8 | AV:N/AC:L/Au:N/C:C/I:N/A:N |
Temporal | 6.4 | E:F/RL:OF/RC:C |
Environmental | 6.4 | CDP:ND/TD:H/CR:ND/IR:ND/AR:ND |
References
'취약점 정보1' 카테고리의 다른 글
Maldoc VBA Sandbox/Virtualization Detection (0) | 2015.03.16 |
---|---|
Telerik Analytics Monitor Library allows DLL hijacking (0) | 2015.03.12 |
Explaining the PostgreSQL pass-the-hash vulnerability (0) | 2015.03.05 |
‘FREAK’ SSL 취약점 주의 권고 (0) | 2015.03.05 |
Samba vulnerability (CVE-2015-0240) (0) | 2015.02.24 |