CVE-2011-3210
published 2011-09-22CVE-2011-3210: The ephemeral ECDH ciphersuite functionality in OpenSSL 0.9.8 through 0.9.8r and 1.0.x before 1.0.0e does not ensure thread safety during processing of…
PriorityP423medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
4.56%
90.5th percentile
The ephemeral ECDH ciphersuite functionality in OpenSSL 0.9.8 through 0.9.8r and 1.0.x before 1.0.0e does not ensure thread safety during processing of handshake messages from clients, which allows remote attackers to cause a denial of service (daemon crash) via out-of-order messages that violate the TLS protocol.
Affected
30 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | openssl | < openssl 1.0.0e-1 (bookworm) | openssl 1.0.0e-1 (bookworm) |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv5.0MEDIUM
vendor_debian5.0MEDIUM
vendor_redhat5.0MEDIUM
vendor_ubuntu2.6LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
OpenSSL vulnerabilities
vendor_ubuntu·2012-02-09·CVSS 2.6
CVE-2012-0027 [LOW] OpenSSL vulnerabilities
Title: OpenSSL vulnerabilities
Summary: Multiple vulnerabilities exist in OpenSSL that could expose
sensitive information or cause applications to crash.
It was discovered that the elliptic curve cryptography (ECC) subsystem
in OpenSSL, when using the Elliptic Curve Digital Signature Algorithm
(ECDSA) for the ECDHE_ECDSA cipher suite, did not properly implement
curves over binary fields. This could allow an attacker to determine
private keys via a timing attack. This issue only affected Ubuntu 8.04
LTS, Ubuntu 10.04 LTS, Ubuntu 10.10 and Ubuntu 11.04. (CVE-2011-1945)
Adam Langley discovered that the ephemeral Elliptic Curve
Diffie-Hellman (ECDH) functionality in OpenSSL did not ensure thread
safety while processing handshake messages from clients. This
could allow a remote attacker to c
Red Hat
openssl: TLS ephemeral ECDH crashes in OpenSSL
vendor_redhat·2011-09-06·CVSS 5.0
CVE-2011-3210 [MEDIUM] openssl: TLS ephemeral ECDH crashes in OpenSSL
openssl: TLS ephemeral ECDH crashes in OpenSSL
The ephemeral ECDH ciphersuite functionality in OpenSSL 0.9.8 through 0.9.8r and 1.0.x before 1.0.0e does not ensure thread safety during processing of handshake messages from clients, which allows remote attackers to cause a denial of service (daemon crash) via out-of-order messages that violate the TLS protocol.
Statement: Not vulnerable. This issue did not affect the versions of openssl as shipped with Red Hat Enterprise Linux 3, 4, 5, or 6, as they do not include the support for the elliptic curve cryptography.
Package: openssl (Red Hat Enterprise Linux 4) - Not affected
Package: openssl096b (Red Hat Enterprise Linux 4) - Not affected
Package: openssl (Red Hat Enterprise Linux 5) - Not affected
Package: openssl097a (Red Hat Enterpris
Debian
CVE-2011-3210: openssl - The ephemeral ECDH ciphersuite functionality in OpenSSL 0.9.8 through 0.9.8r and...
vendor_debian·2011·CVSS 5.0
CVE-2011-3210 [MEDIUM] CVE-2011-3210: openssl - The ephemeral ECDH ciphersuite functionality in OpenSSL 0.9.8 through 0.9.8r and...
The ephemeral ECDH ciphersuite functionality in OpenSSL 0.9.8 through 0.9.8r and 1.0.x before 1.0.0e does not ensure thread safety during processing of handshake messages from clients, which allows remote attackers to cause a denial of service (daemon crash) via out-of-order messages that violate the TLS protocol.
Scope: local
bookworm: resolved (fixed in 1.0.0e-1)
bullseye: resolved (fixed in 1.0.0e-1)
forky: resolved (fixed in 1.0.0e-1)
sid: resolved (fixed in 1.0.0e-1)
trixie: resolved (fixed in 1.0.0e-1)
GHSA
GHSA-q2wp-8mh7-q533: The ephemeral ECDH ciphersuite functionality in OpenSSL 0
ghsa_unreviewed·2022-05-17
CVE-2011-3210 [MEDIUM] GHSA-q2wp-8mh7-q533: The ephemeral ECDH ciphersuite functionality in OpenSSL 0
The ephemeral ECDH ciphersuite functionality in OpenSSL 0.9.8 through 0.9.8r and 1.0.x before 1.0.0e does not ensure thread safety during processing of handshake messages from clients, which allows remote attackers to cause a denial of service (daemon crash) via out-of-order messages that violate the TLS protocol.
OSV
CVE-2011-3210: The ephemeral ECDH ciphersuite functionality in OpenSSL 0
osv·2011-09-22·CVSS 5.0
CVE-2011-3210 [MEDIUM] CVE-2011-3210: The ephemeral ECDH ciphersuite functionality in OpenSSL 0
The ephemeral ECDH ciphersuite functionality in OpenSSL 0.9.8 through 0.9.8r and 1.0.x before 1.0.0e does not ensure thread safety during processing of handshake messages from clients, which allows remote attackers to cause a denial of service (daemon crash) via out-of-order messages that violate the TLS protocol.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2011-3210 openssl: TLS ephemeral ECDH crashes in OpenSSL
bugzilla·2011-09-06·CVSS 5.0
CVE-2011-3210 [MEDIUM] CVE-2011-3210 openssl: TLS ephemeral ECDH crashes in OpenSSL
CVE-2011-3210 openssl: TLS ephemeral ECDH crashes in OpenSSL
From the upstream advisory [1]:
OpenSSL server code for ephemeral ECDH ciphersuites is not thread-safe, and
furthermore can crash if a client violates the protocol by sending handshake
messages in incorrect order. (CVE-2011-3210)
This issue applies to OpenSSL 0.9.8 through 0.9.8s (experimental "ECCdraft"
ciphersuites) and to OpenSSL 1.0.0 through 1.0.0d.
Affected users of OpenSSL should update to the OpenSSL 1.0.0e release, which
contains a patch to correct this issue. If you cannot immediately upgrade,
we recommend that you disable ephemeral ECDH ciphersuites if you have enabled
them.
Thanks to Adam Langley for identifying and fixing this
issue.
Only server-side applications that specifically support ephemeral ECDH
ciphers
arXiv
One Bad Apple Spoils the Barrel: Understanding the Security Risks Introduced by Third-Party Components in IoT Firmware
arxiv_fulltext·2022-12-29
One Bad Apple Spoils the Barrel: Understanding the Security Risks Introduced by Third-Party Components in IoT Firmware
One Bad Apple Spoils the Barrel: Understanding the Security Risks Introduced by Third-Party Components in IoT Firmware
## Abstract
Currently, the development of IoT firmware heavily depends on third-party components (TPCs) to improve development efficiency. Nevertheless, TPCs are not secure, and the vulnerabilities in TPCs will influence the security of IoT firmware. Existing works pay less attention to the vulnerabilities caused by TPCs, and we still lack a comprehensive understanding of the security impact of TPC vulnerability against firmware. To fill in the knowledge gap, we design and implement , which leverages syntactical features and control-flow graph features to detect the TPCs in firmware, and then recognizes the corresponding vulnerabilities. Based on , we present the first l
http://cvs.openssl.org/chngview?cn=21337http://lists.apple.com/archives/security-announce/2013/Jun/msg00000.htmlhttp://marc.info/?l=bugtraq&m=132750648501816&w=2http://marc.info/?l=bugtraq&m=133226187115472&w=2http://openssl.org/news/secadv_20110906.txthttp://secunia.com/advisories/57353http://support.apple.com/kb/HT5784http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004564http://www.mandriva.com/security/advisories?name=MDVSA-2011:137http://www.securitytracker.com/id?1026012https://bugzilla.redhat.com/show_bug.cgi?id=736079http://cvs.openssl.org/chngview?cn=21337http://lists.apple.com/archives/security-announce/2013/Jun/msg00000.htmlhttp://marc.info/?l=bugtraq&m=132750648501816&w=2http://marc.info/?l=bugtraq&m=133226187115472&w=2http://openssl.org/news/secadv_20110906.txthttp://secunia.com/advisories/57353http://support.apple.com/kb/HT5784http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004564http://www.mandriva.com/security/advisories?name=MDVSA-2011:137http://www.securitytracker.com/id?1026012https://bugzilla.redhat.com/show_bug.cgi?id=736079
2011-09-22
Published