CVE-2014-0016
stunnel before 5.00, when using fork threading, does not properly update the state of the OpenSSL pseudo-random number generator (PRNG), which causes subsequent children with the same process ID to use the same entropy pool and allows remote attackers…
Does this matter?
Lower severity and a low EPSS score (2.15%). Track it; it rarely justifies an emergency change on its own.
Description
stunnel before 5.00, when using fork threading, does not properly update the state of the OpenSSL pseudo-random number generator (PRNG), which causes subsequent children with the same process ID to use the same entropy pool and allows remote attackers to obtain private keys for EC (ECDSA) or DSA certificates.
- CVSS 2.0
- 4.3 MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
- EPSS
- 2.15% probability · 81th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-332
- Affected
- stunnel/stunnel
- Source
- secalert@redhat.com
References
- http://www.openwall.com/lists/oss-security/2014/03/05/1Mailing List, Third Party Advisory
- http://www.securityfocus.com/bid/65964Third Party Advisory, VDB Entry
- https://bugzilla.redhat.com/attachment.cgi?id=870826&action=diffPatch
- https://bugzilla.redhat.com/show_bug.cgi?id=1072180Issue Tracking, Third Party Advisory, VDB Entry
- https://www.stunnel.org/sdf_ChangeLog.htmlRelease Notes, Vendor Advisory
- http://www.openwall.com/lists/oss-security/2014/03/05/1Mailing List, Third Party Advisory
- http://www.securityfocus.com/bid/65964Third Party Advisory, VDB Entry
- https://bugzilla.redhat.com/attachment.cgi?id=870826&action=diffPatch
- https://bugzilla.redhat.com/show_bug.cgi?id=1072180Issue Tracking, Third Party Advisory, VDB Entry
- https://www.stunnel.org/sdf_ChangeLog.htmlRelease Notes, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.