Overview
Some implementations of SSL/TLS accept export-grade (512-bit or smaller) RSA keys even when not specifically requesting export grade ciphers. An attacker able to act as a Man-in-The-Middle (MiTM) could factor weak temporary RSA keys, obtain session keys, and decrypt SSL/TLS trafflc. This issue has been dubbed the "FREAK" (Factoring Attack on RSA-EXPORT Keys) attack.
Description
CWE-757: Selection of Less-Secure Algorithm During Negotiation ('Algorithm Downgrade') CWE-326: Inadequate Encryption Strength |
Impact
The weak 512-bit "export grade" RSA keys can be factored to allow an attacker to decrypt information encrypted with these keys. |
Solution
Update SSL/TLS libraries and applications |
Vendor Information (Learn More)
| Vendor | Status | Date Notified | Date Updated |
|---|---|---|---|
| Apple | Affected | 05 Mar 2015 | 06 Mar 2015 |
| Affected | 05 Mar 2015 | 06 Mar 2015 | |
| Microsoft Corporation | Affected | 05 Mar 2015 | 10 Mar 2015 |
| OpenSSL | Affected | 05 Mar 2015 | 06 Mar 2015 |
| Opera | Affected | - | 06 Mar 2015 |
| Research in Motion (RIM) | Affected | - | 06 Mar 2015 |
| Botan | Not Affected | 05 Mar 2015 | 06 Mar 2015 |
| Cryptlib | Not Affected | 05 Mar 2015 | 09 Mar 2015 |
| GnuTLS | Not Affected | 05 Mar 2015 | 06 Mar 2015 |
| Legion of the Bouncy Castle | Not Affected | 05 Mar 2015 | 09 Mar 2015 |
| Apache-SSL | Unknown | 05 Mar 2015 | 05 Mar 2015 |
| Attachmate | Unknown | 05 Mar 2015 | 05 Mar 2015 |
| Certicom | Unknown | 05 Mar 2015 | 05 Mar 2015 |
| Crypto++ Library | Unknown | 05 Mar 2015 | 05 Mar 2015 |
| EMC Corporation | Unknown | 05 Mar 2015 | 05 Mar 2015 |
If you are a vendor and your product is affected, let us know.View More »
CVSS Metrics (Learn More)
| Group | Score | Vector |
|---|---|---|
| Base | 7.8 | AV:N/AC:L/Au:N/C:C/I:N/A:N |
| Temporal | 6.4 | E:F/RL:OF/RC:C |
| Environmental | 6.4 | CDP:ND/TD:H/CR:ND/IR:ND/AR:ND |
References
'취약점 정보1' 카테고리의 다른 글
| Maldoc VBA Sandbox/Virtualization Detection (0) | 2015.03.16 |
|---|---|
| Telerik Analytics Monitor Library allows DLL hijacking (0) | 2015.03.12 |
| Explaining the PostgreSQL pass-the-hash vulnerability (0) | 2015.03.05 |
| ‘FREAK’ SSL 취약점 주의 권고 (0) | 2015.03.05 |
| Samba vulnerability (CVE-2015-0240) (0) | 2015.02.24 |