CVE-2009-2409
published 2009-07-30CVE-2009-2409: The Network Security Services (NSS) library before 3.12.3, as used in Firefox; GnuTLS before 2.6.4 and 2.7.4; OpenSSL 0.9.8 through 0.9.8k; and other products…
PriorityP426medium5.1CVSS 2.0
AVNACHAuNCPIPAP
EPSS
4.51%
90.5th percentile
The Network Security Services (NSS) library before 3.12.3, as used in Firefox; GnuTLS before 2.6.4 and 2.7.4; OpenSSL 0.9.8 through 0.9.8k; and other products support MD2 with X.509 certificates, which might allow remote attackers to spoof certificates by using MD2 design flaws to generate a hash collision in less than brute-force time. NOTE: the scope of this issue is currently limited because the amount of computation required is still large.
Affected
44 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | nss | < nss 3.12.3-1 (bookworm) | nss 3.12.3-1 (bookworm) |
| debian | openssl | < nss 3.12.3-1 (bookworm) | nss 3.12.3-1 (bookworm) |
| gnu | gnutls | < 2.6.4 | 2.6.4 |
| gnu | gnutls | >= 2.7.0 < 2.7.4 | 2.7.4 |
| chrome | <= 2.0.172.37 | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — |
CVSS provenance
nvdv2.05.1MEDIUMAV:N/AC:H/Au:N/C:P/I:P/A:P
osv5.1MEDIUM
vendor_ubuntu9.3CRITICAL
vendor_debian5.1LOW
vendor_redhat5.1MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
OpenJDK vulnerabilities
vendor_ubuntu·2009-11-12·CVSS 5.1
CVE-2009-3728 [MEDIUM] OpenJDK vulnerabilities
Title: OpenJDK vulnerabilities
Summary: OpenJDK vulnerabilities
Dan Kaminsky discovered that SSL certificates signed with MD2 could be
spoofed given enough time. As a result, an attacker could potentially
create a malicious trusted certificate to impersonate another site. This
update handles this issue by completely disabling MD2 for certificate
validation in OpenJDK. (CVE-2009-2409)
It was discovered that ICC profiles could be identified with
".." pathnames. If a user were tricked into running a specially
crafted applet, a remote attacker could gain information about a local
system. (CVE-2009-3728)
Peter Vreugdenhil discovered multiple flaws in the processing of graphics
in the AWT library. If a user were tricked into running a specially
crafted applet, a remote attacker could crash t
Ubuntu
OpenSSL vulnerability
vendor_ubuntu·2009-09-14
CVE-2009-2409 OpenSSL vulnerability
Title: OpenSSL vulnerability
Summary: OpenSSL vulnerability
Dan Kaminsky discovered OpenSSL would still accept certificates with MD2
hash signatures. As a result, an attacker could potentially create a
malicious trusted certificate to impersonate another site. This update
handles this issue by completely disabling MD2 for certificate validation.
Instructions: After a standard system upgrade you need to reboot your computer to
effect the necessary changes.
Ubuntu
NSS regression
vendor_ubuntu·2009-09-02·CVSS 9.3
[CRITICAL] NSS regression
Title: NSS regression
Summary: NSS regression
USN-810-1 fixed vulnerabilities in NSS. Jozsef Kadlecsik noticed that
the new libraries on amd64 did not correctly set stack memory flags,
and caused applications using NSS (e.g. Firefox) to have an executable
stack. This reduced the effectiveness of some defensive security
protections. This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
Moxie Marlinspike discovered that NSS did not properly handle regular
expressions in certificate names. A remote attacker could create a
specially crafted certificate to cause a denial of service (via application
crash) or execute arbitrary code as the user invoking the program.
(CVE-2009-2404)
Moxie Marlinspike and Dan Kaminsky independently discovered that NSS d
Ubuntu
GnuTLS vulnerabilities
vendor_ubuntu·2009-08-19·CVSS 5.9
CVE-2009-2730 [MEDIUM] GnuTLS vulnerabilities
Title: GnuTLS vulnerabilities
Summary: GnuTLS vulnerabilities
Moxie Marlinspike and Dan Kaminsky independently discovered that GnuTLS did
not properly handle certificates with NULL characters in the certificate
name. An attacker could exploit this to perform a machine-in-the-middle attack
to view sensitive information or alter encrypted communications.
(CVE-2009-2730)
Dan Kaminsky discovered GnuTLS would still accept certificates with MD2
hash signatures. As a result, an attacker could potentially create a
malicious trusted certificate to impersonate another site. This issue only
affected Ubuntu 6.06 LTS and Ubuntu 8.10. (CVE-2009-2409)
USN-678-1 fixed a vulnerability and USN-678-2 a regression in GnuTLS. The
upstream patches introduced a regression when validating certain certificate
Ubuntu
NSPR update
vendor_ubuntu·2009-08-04·CVSS 9.3
CVE-2009-2404 [CRITICAL] NSPR update
Title: NSPR update
Summary: NSPR update
USN-810-1 fixed vulnerabilities in NSS. This update provides the NSPR
needed to use the new NSS.
Original advisory details:
Moxie Marlinspike discovered that NSS did not properly handle regular
expressions in certificate names. A remote attacker could create a
specially crafted certificate to cause a denial of service (via application
crash) or execute arbitrary code as the user invoking the program.
(CVE-2009-2404)
Moxie Marlinspike and Dan Kaminsky independently discovered that NSS did
not properly handle certificates with NULL characters in the certificate
name. An attacker could exploit this to perform a machine-in-the-middle attack
to view sensitive information or alter encrypted communications.
(CVE-2009-2408)
Dan Kaminsky discovered NSS
Ubuntu
NSS vulnerabilities
vendor_ubuntu·2009-08-04·CVSS 9.3
CVE-2009-2404 [CRITICAL] NSS vulnerabilities
Title: NSS vulnerabilities
Summary: NSS vulnerabilities
Moxie Marlinspike discovered that NSS did not properly handle regular
expressions in certificate names. A remote attacker could create a
specially crafted certificate to cause a denial of service (via application
crash) or execute arbitrary code as the user invoking the program.
(CVE-2009-2404)
Moxie Marlinspike and Dan Kaminsky independently discovered that NSS did
not properly handle certificates with NULL characters in the certificate
name. An attacker could exploit this to perform a machine-in-the-middle attack
to view sensitive information or alter encrypted communications.
(CVE-2009-2408)
Dan Kaminsky discovered NSS would still accept certificates with MD2 hash
signatures. As a result, an attacker could potentially create a
Red Hat
deprecate MD2 in SSL cert validation (Kaminsky)
vendor_redhat·2009-07-29·CVSS 5.1
CVE-2009-2409 [MEDIUM] deprecate MD2 in SSL cert validation (Kaminsky)
deprecate MD2 in SSL cert validation (Kaminsky)
The Network Security Services (NSS) library before 3.12.3, as used in Firefox; GnuTLS before 2.6.4 and 2.7.4; OpenSSL 0.9.8 through 0.9.8k; and other products support MD2 with X.509 certificates, which might allow remote attackers to spoof certificates by using MD2 design flaws to generate a hash collision in less than brute-force time. NOTE: the scope of this issue is currently limited because the amount of computation required is still large.
Debian
CVE-2009-2409: nss - The Network Security Services (NSS) library before 3.12.3, as used in Firefox; G...
vendor_debian·2009·CVSS 5.1
CVE-2009-2409 [MEDIUM] CVE-2009-2409: nss - The Network Security Services (NSS) library before 3.12.3, as used in Firefox; G...
The Network Security Services (NSS) library before 3.12.3, as used in Firefox; GnuTLS before 2.6.4 and 2.7.4; OpenSSL 0.9.8 through 0.9.8k; and other products support MD2 with X.509 certificates, which might allow remote attackers to spoof certificates by using MD2 design flaws to generate a hash collision in less than brute-force time. NOTE: the scope of this issue is currently limited because the amount of computation required is still large.
Scope: local
bookworm: resolved (fixed in 3.12.3-1)
bullseye: resolved (fixed in 3.12.3-1)
forky: resolved (fixed in 3.12.3-1)
sid: resolved (fixed in 3.12.3-1)
trixie: resolved (fixed in 3.12.3-1)
GHSA
GHSA-c2f9-w3c5-x385: The Network Security Services (NSS) library before 3
ghsa_unreviewed·2022-05-02
CVE-2009-2409 [MEDIUM] CWE-295 GHSA-c2f9-w3c5-x385: The Network Security Services (NSS) library before 3
The Network Security Services (NSS) library before 3.12.3, as used in Firefox; GnuTLS before 2.6.4 and 2.7.4; OpenSSL 0.9.8 through 0.9.8k; and other products support MD2 with X.509 certificates, which might allow remote attackers to spoof certificates by using MD2 design flaws to generate a hash collision in less than brute-force time. NOTE: the scope of this issue is currently limited because the amount of computation required is still large.
GHSA
GHSA-2c4v-vhcv-h8xg: Google Chrome before 2
ghsa_unreviewed·2022-05-02·CVSS 5.1
CVE-2009-2973 [MEDIUM] GHSA-2c4v-vhcv-h8xg: Google Chrome before 2
Google Chrome before 2.0.172.43 does not prevent SSL connections to a site with an X.509 certificate signed with the (1) MD2 or (2) MD4 algorithm, which makes it easier for man-in-the-middle attackers to spoof arbitrary HTTPS servers via a crafted certificate, a related issue to CVE-2009-2409.
OSV
CVE-2009-2409: The Network Security Services (NSS) library before 3
osv·2009-07-30·CVSS 5.1
CVE-2009-2409 [MEDIUM] CVE-2009-2409: The Network Security Services (NSS) library before 3
The Network Security Services (NSS) library before 3.12.3, as used in Firefox; GnuTLS before 2.6.4 and 2.7.4; OpenSSL 0.9.8 through 0.9.8k; and other products support MD2 with X.509 certificates, which might allow remote attackers to spoof certificates by using MD2 design flaws to generate a hash collision in less than brute-force time. NOTE: the scope of this issue is currently limited because the amount of computation required is still large.
No detection rules found.
No public exploits indexed.
http://java.sun.com/j2se/1.5.0/ReleaseNotes.htmlhttp://java.sun.com/javase/6/webnotes/6u17.htmlhttp://lists.apple.com/archives/security-announce/2009/Nov/msg00000.htmlhttp://secunia.com/advisories/36139http://secunia.com/advisories/36157http://secunia.com/advisories/36434http://secunia.com/advisories/36669http://secunia.com/advisories/36739http://secunia.com/advisories/37386http://secunia.com/advisories/42467http://security.gentoo.org/glsa/glsa-200911-02.xmlhttp://security.gentoo.org/glsa/glsa-200912-01.xmlhttp://support.apple.com/kb/HT3937http://www.debian.org/security/2009/dsa-1874http://www.mandriva.com/security/advisories?name=MDVSA-2009:197http://www.mandriva.com/security/advisories?name=MDVSA-2009:216http://www.mandriva.com/security/advisories?name=MDVSA-2009:258http://www.mandriva.com/security/advisories?name=MDVSA-2010:084http://www.redhat.com/support/errata/RHSA-2009-1207.htmlhttp://www.redhat.com/support/errata/RHSA-2009-1432.htmlhttp://www.securityfocus.com/archive/1/515055/100/0/threadedhttp://www.securitytracker.com/id?1022631http://www.ubuntu.com/usn/usn-810-1http://www.vmware.com/security/advisories/VMSA-2010-0019.htmlhttp://www.vupen.com/english/advisories/2009/2085http://www.vupen.com/english/advisories/2009/3184http://www.vupen.com/english/advisories/2010/3126https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2009-2409https://lists.balabit.com/pipermail/syslog-ng-announce/2011-January/000101.htmlhttps://lists.balabit.com/pipermail/syslog-ng-announce/2011-January/000102.htmlhttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10763https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6631https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7155https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8594https://rhn.redhat.com/errata/RHSA-2010-0095.htmlhttps://usn.ubuntu.com/810-2/https://www.debian.org/security/2009/dsa-1888http://java.sun.com/j2se/1.5.0/ReleaseNotes.htmlhttp://java.sun.com/javase/6/webnotes/6u17.htmlhttp://lists.apple.com/archives/security-announce/2009/Nov/msg00000.htmlhttp://secunia.com/advisories/36139http://secunia.com/advisories/36157http://secunia.com/advisories/36434http://secunia.com/advisories/36669http://secunia.com/advisories/36739http://secunia.com/advisories/37386http://secunia.com/advisories/42467http://security.gentoo.org/glsa/glsa-200911-02.xmlhttp://security.gentoo.org/glsa/glsa-200912-01.xmlhttp://support.apple.com/kb/HT3937http://www.debian.org/security/2009/dsa-1874http://www.mandriva.com/security/advisories?name=MDVSA-2009:197http://www.mandriva.com/security/advisories?name=MDVSA-2009:216http://www.mandriva.com/security/advisories?name=MDVSA-2009:258http://www.mandriva.com/security/advisories?name=MDVSA-2010:084http://www.redhat.com/support/errata/RHSA-2009-1207.htmlhttp://www.redhat.com/support/errata/RHSA-2009-1432.htmlhttp://www.securityfocus.com/archive/1/515055/100/0/threadedhttp://www.securitytracker.com/id?1022631http://www.ubuntu.com/usn/usn-810-1http://www.vmware.com/security/advisories/VMSA-2010-0019.htmlhttp://www.vupen.com/english/advisories/2009/2085http://www.vupen.com/english/advisories/2009/3184http://www.vupen.com/english/advisories/2010/3126https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2009-2409https://lists.balabit.com/pipermail/syslog-ng-announce/2011-January/000101.htmlhttps://lists.balabit.com/pipermail/syslog-ng-announce/2011-January/000102.htmlhttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10763https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6631https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7155https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8594https://rhn.redhat.com/errata/RHSA-2010-0095.htmlhttps://usn.ubuntu.com/810-2/https://www.debian.org/security/2009/dsa-1888
2009-07-30
Published