CVE-2006-4339
OpenSSL before 0.9.7, 0.9.7 before 0.9.7k, and 0.9.8 before 0.9.8c, when using an RSA key with exponent 3, removes PKCS-1 padding before generating a hash, which allows remote attackers to forge a PKCS #1 v1.5 signature that is signed by that RSA key…
Does this matter?
Lower severity and a low EPSS score (5.00%). Track it; it rarely justifies an emergency change on its own.
Description
OpenSSL before 0.9.7, 0.9.7 before 0.9.7k, and 0.9.8 before 0.9.8c, when using an RSA key with exponent 3, removes PKCS-1 padding before generating a hash, which allows remote attackers to forge a PKCS #1 v1.5 signature that is signed by that RSA key and prevents OpenSSL from correctly verifying X.509 and other certificates that use PKCS #1.
- CVSS 2.0
- 4.3 MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
- EPSS
- 5.00% probability · 92th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-310
- Affected
- openssl/openssl
- Source
- secalert@redhat.com
References
- ftp://patches.sgi.com/support/free/security/advisories/20060901-01-P.asc
- http://dev2dev.bea.com/pub/advisory/238
- http://docs.info.apple.com/article.html?artnum=304829
- http://docs.info.apple.com/article.html?artnum=307177
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?lang=en&cc=us&objectID=c01070495
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01118771
- http://itrc.hp.com/service/cki/docDisplay.do?docId=c00849540
- http://jvn.jp/en/jp/JVN51615542/index.html
- http://jvndb.jvn.jp/ja/contents/2012/JVNDB-2012-000079.html
- http://lists.apple.com/archives/Security-announce/2007/Dec/msg00001.html
- http://lists.apple.com/archives/security-announce/2006/Nov/msg00001.html
- http://lists.vmware.com/pipermail/security-announce/2008/000008.html
- http://marc.info/?l=bind-announce&m=116253119512445&w=2
- http://marc.info/?l=bugtraq&m=130497311408250&w=2
- http://openvpn.net/changelog.html
- http://secunia.com/advisories/21709Patch, Vendor Advisory
- http://secunia.com/advisories/21767Vendor Advisory
- http://secunia.com/advisories/21776Vendor Advisory
- http://secunia.com/advisories/21778Vendor Advisory
- http://secunia.com/advisories/21785Vendor Advisory
- http://secunia.com/advisories/21791Vendor Advisory
- http://secunia.com/advisories/21812Vendor Advisory
- http://secunia.com/advisories/21823Vendor Advisory
- http://secunia.com/advisories/21846Vendor Advisory
- http://secunia.com/advisories/21852Vendor Advisory
- http://secunia.com/advisories/21870Vendor Advisory
- http://secunia.com/advisories/21873Vendor Advisory
- http://secunia.com/advisories/21906Vendor Advisory
- http://secunia.com/advisories/21927Vendor Advisory
- http://secunia.com/advisories/21930Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.