CVE-2011-1945
published 2011-05-31CVE-2011-1945: The elliptic curve cryptography (ECC) subsystem in OpenSSL 1.0.0d and earlier, when the Elliptic Curve Digital Signature Algorithm (ECDSA) is used for the…
PriorityP413low2.6CVSS 2.0
AVNACHAuNCPINAN
EPSS
3.43%
87.7th percentile
The elliptic curve cryptography (ECC) subsystem in OpenSSL 1.0.0d and earlier, when the Elliptic Curve Digital Signature Algorithm (ECDSA) is used for the ECDHE_ECDSA cipher suite, does not properly implement curves over binary fields, which makes it easier for context-dependent attackers to determine private keys via a timing attack and a lattice calculation.
Affected
62 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | openssl | < openssl 1.0.0e-1 (bookworm) | openssl 1.0.0e-1 (bookworm) |
| openssl | openssl | <= 1.0.0d | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
CVSS provenance
nvdv2.02.6LOWAV:N/AC:H/Au:N/C:P/I:N/A:N
osv2.6LOW
vendor_debian2.6LOW
vendor_redhat2.6LOW
vendor_ubuntu2.6LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-r4rf-h58w-4p76: The elliptic curve cryptography (ECC) subsystem in OpenSSL 1
ghsa_unreviewed·2022-05-17
CVE-2011-1945 [LOW] GHSA-r4rf-h58w-4p76: The elliptic curve cryptography (ECC) subsystem in OpenSSL 1
The elliptic curve cryptography (ECC) subsystem in OpenSSL 1.0.0d and earlier, when the Elliptic Curve Digital Signature Algorithm (ECDSA) is used for the ECDHE_ECDSA cipher suite, does not properly implement curves over binary fields, which makes it easier for context-dependent attackers to determine private keys via a timing attack and a lattice calculation.
OSV
CVE-2011-1945: The elliptic curve cryptography (ECC) subsystem in OpenSSL 1
osv·2011-05-31·CVSS 2.6
CVE-2011-1945 [LOW] CVE-2011-1945: The elliptic curve cryptography (ECC) subsystem in OpenSSL 1
The elliptic curve cryptography (ECC) subsystem in OpenSSL 1.0.0d and earlier, when the Elliptic Curve Digital Signature Algorithm (ECDSA) is used for the ECDHE_ECDSA cipher suite, does not properly implement curves over binary fields, which makes it easier for context-dependent attackers to determine private keys via a timing attack and a lattice calculation.
Ubuntu
OpenSSL vulnerabilities
vendor_ubuntu·2012-02-09·CVSS 2.6
CVE-2012-0027 [LOW] OpenSSL vulnerabilities
Title: OpenSSL vulnerabilities
Summary: Multiple vulnerabilities exist in OpenSSL that could expose
sensitive information or cause applications to crash.
It was discovered that the elliptic curve cryptography (ECC) subsystem
in OpenSSL, when using the Elliptic Curve Digital Signature Algorithm
(ECDSA) for the ECDHE_ECDSA cipher suite, did not properly implement
curves over binary fields. This could allow an attacker to determine
private keys via a timing attack. This issue only affected Ubuntu 8.04
LTS, Ubuntu 10.04 LTS, Ubuntu 10.10 and Ubuntu 11.04. (CVE-2011-1945)
Adam Langley discovered that the ephemeral Elliptic Curve
Diffie-Hellman (ECDH) functionality in OpenSSL did not ensure thread
safety while processing handshake messages from clients. This
could allow a remote attacker to c
Red Hat
openssl: ECDSA private key leak through a remote timing attack
vendor_redhat·2011-05-17·CVSS 2.6
CVE-2011-1945 [LOW] openssl: ECDSA private key leak through a remote timing attack
openssl: ECDSA private key leak through a remote timing attack
The elliptic curve cryptography (ECC) subsystem in OpenSSL 1.0.0d and earlier, when the Elliptic Curve Digital Signature Algorithm (ECDSA) is used for the ECDHE_ECDSA cipher suite, does not properly implement curves over binary fields, which makes it easier for context-dependent attackers to determine private keys via a timing attack and a lattice calculation.
Statement: Not vulnerable. This issue did not affect the versions of openssl as shipped with Red Hat Enterprise Linux 3, 4, 5, or 6, as they do not include the support for the elliptic curve cryptography.
Package: openssl (Red Hat Enterprise Linux 4) - Not affected
Package: openssl096b (Red Hat Enterprise Linux 4) - Not affected
Package: openssl (Red Hat Enterprise L
Debian
CVE-2011-1945: openssl - The elliptic curve cryptography (ECC) subsystem in OpenSSL 1.0.0d and earlier, w...
vendor_debian·2011·CVSS 2.6
CVE-2011-1945 [LOW] CVE-2011-1945: openssl - The elliptic curve cryptography (ECC) subsystem in OpenSSL 1.0.0d and earlier, w...
The elliptic curve cryptography (ECC) subsystem in OpenSSL 1.0.0d and earlier, when the Elliptic Curve Digital Signature Algorithm (ECDSA) is used for the ECDHE_ECDSA cipher suite, does not properly implement curves over binary fields, which makes it easier for context-dependent attackers to determine private keys via a timing attack and a lattice calculation.
Scope: local
bookworm: resolved (fixed in 1.0.0e-1)
bullseye: resolved (fixed in 1.0.0e-1)
forky: resolved (fixed in 1.0.0e-1)
sid: resolved (fixed in 1.0.0e-1)
trixie: resolved (fixed in 1.0.0e-1)
No detection rules found.
No public exploits indexed.
http://eprint.iacr.org/2011/232.pdfhttp://lists.apple.com/archives/security-announce/2013/Jun/msg00000.htmlhttp://secunia.com/advisories/44935http://support.apple.com/kb/HT5784http://www.debian.org/security/2011/dsa-2309http://www.kb.cert.org/vuls/id/536044http://www.kb.cert.org/vuls/id/MAPG-8FENZ3http://www.mandriva.com/security/advisories?name=MDVSA-2011:136http://www.mandriva.com/security/advisories?name=MDVSA-2011:137https://hermes.opensuse.org/messages/8760466https://hermes.opensuse.org/messages/8764170http://eprint.iacr.org/2011/232.pdfhttp://lists.apple.com/archives/security-announce/2013/Jun/msg00000.htmlhttp://secunia.com/advisories/44935http://support.apple.com/kb/HT5784http://www.debian.org/security/2011/dsa-2309http://www.kb.cert.org/vuls/id/536044http://www.kb.cert.org/vuls/id/MAPG-8FENZ3http://www.mandriva.com/security/advisories?name=MDVSA-2011:136http://www.mandriva.com/security/advisories?name=MDVSA-2011:137https://hermes.opensuse.org/messages/8760466https://hermes.opensuse.org/messages/8764170
2011-05-31
Published