CVE-2012-2333
published 2012-05-14CVE-2012-2333: Integer underflow in OpenSSL before 0.9.8x, 1.0.0 before 1.0.0j, and 1.0.1 before 1.0.1c, when TLS 1.1, TLS 1.2, or DTLS is used with CBC encryption, allows…
PriorityP342medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
28.15%
97.9th percentile
Integer underflow in OpenSSL before 0.9.8x, 1.0.0 before 1.0.0j, and 1.0.1 before 1.0.1c, when TLS 1.1, TLS 1.2, or DTLS is used with CBC encryption, allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecified other impact via a crafted TLS packet that is not properly handled during a certain explicit IV calculation.
Affected
82 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | openssl | < openssl 1.0.1c-1 (bookworm) | openssl 1.0.1c-1 (bookworm) |
| ibm | global_security_kit | <= 8.0.13 | — |
| ibm | global_security_kit | — | — |
| ibm | global_security_kit | — | — |
| openssl | openssl | <= 0.9.8w | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
| openssl | openssl | — | — |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv6.8MEDIUM
vendor_debian6.8MEDIUM
vendor_redhat6.8MEDIUM
vendor_ubuntu5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-9f2v-g758-7mf3: IBM Global Security Kit (aka GSKit) before 8
ghsa_unreviewed·2022-05-17·CVSS 6.8
CVE-2012-2191 [MEDIUM] CWE-20 GHSA-9f2v-g758-7mf3: IBM Global Security Kit (aka GSKit) before 8
IBM Global Security Kit (aka GSKit) before 8.0.14.22, as used in IBM Rational Directory Server, IBM Tivoli Directory Server, and other products, does not properly validate data during execution of a protection mechanism against the Vaudenay SSL CBC timing attack, which allows remote attackers to cause a denial of service (application crash) via crafted values in the TLS Record Layer, a different vulnerability than CVE-2012-2333.
GHSA
GHSA-45m2-xm5p-3949: Integer underflow in OpenSSL before 0
ghsa_unreviewed·2022-05-14
CVE-2012-2333 [MEDIUM] GHSA-45m2-xm5p-3949: Integer underflow in OpenSSL before 0
Integer underflow in OpenSSL before 0.9.8x, 1.0.0 before 1.0.0j, and 1.0.1 before 1.0.1c, when TLS 1.1, TLS 1.2, or DTLS is used with CBC encryption, allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecified other impact via a crafted TLS packet that is not properly handled during a certain explicit IV calculation.
OSV
CVE-2012-2333: Integer underflow in OpenSSL before 0
osv·2012-05-14·CVSS 6.8
CVE-2012-2333 [MEDIUM] CVE-2012-2333: Integer underflow in OpenSSL before 0
Integer underflow in OpenSSL before 0.9.8x, 1.0.0 before 1.0.0j, and 1.0.1 before 1.0.1c, when TLS 1.1, TLS 1.2, or DTLS is used with CBC encryption, allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecified other impact via a crafted TLS packet that is not properly handled during a certain explicit IV calculation.
Ubuntu
OpenSSL vulnerabilities
vendor_ubuntu·2012-05-24·CVSS 5.0
CVE-2012-0884 [MEDIUM] OpenSSL vulnerabilities
Title: OpenSSL vulnerabilities
Summary: Applications using OpenSSL in certain situations could be made to
crash or expose sensitive information.
Ivan Nestlerode discovered that the Cryptographic Message Syntax
(CMS) and PKCS #7 implementations in OpenSSL returned early if RSA
decryption failed. This could allow an attacker to expose sensitive
information via a Million Message Attack (MMA). (CVE-2012-0884)
It was discovered that an integer underflow was possible when using
TLS 1.1, TLS 1.2, or DTLS with CBC encryption. This could allow a
remote attacker to cause a denial of service. (CVE-2012-2333)
Instructions: After a standard system update you need to reboot your computer to make
all the necessary changes.
Red Hat
openssl: record length handling integer underflow
vendor_redhat·2012-05-10·CVSS 6.8
CVE-2012-2333 [MEDIUM] CWE-190 openssl: record length handling integer underflow
openssl: record length handling integer underflow
Integer underflow in OpenSSL before 0.9.8x, 1.0.0 before 1.0.0j, and 1.0.1 before 1.0.1c, when TLS 1.1, TLS 1.2, or DTLS is used with CBC encryption, allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecified other impact via a crafted TLS packet that is not properly handled during a certain explicit IV calculation.
Statement: This issue did not affect the versions of openssl as shipped with Red Hat Enterprise Linux 3 and 4. The openssl versions in Red Hat Enterprise Linux 5 and 6 were partially affected, as they support DTLS, but they do not support TLS 1.1 and TLS 1.2. This issue was addressed in Red Hat Enterprise Linux 5 and 6 via RHSA-2012:0699.
Package: openssl (Red Hat Enterprise Linux 4)
Debian
CVE-2012-2333: openssl - Integer underflow in OpenSSL before 0.9.8x, 1.0.0 before 1.0.0j, and 1.0.1 befor...
vendor_debian·2012·CVSS 6.8
CVE-2012-2333 [MEDIUM] CVE-2012-2333: openssl - Integer underflow in OpenSSL before 0.9.8x, 1.0.0 before 1.0.0j, and 1.0.1 befor...
Integer underflow in OpenSSL before 0.9.8x, 1.0.0 before 1.0.0j, and 1.0.1 before 1.0.1c, when TLS 1.1, TLS 1.2, or DTLS is used with CBC encryption, allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecified other impact via a crafted TLS packet that is not properly handled during a certain explicit IV calculation.
Scope: local
bookworm: resolved (fixed in 1.0.1c-1)
bullseye: resolved (fixed in 1.0.1c-1)
forky: resolved (fixed in 1.0.1c-1)
sid: resolved (fixed in 1.0.1c-1)
trixie: resolved (fixed in 1.0.1c-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-2333 openssl: record length handling integer underflow
bugzilla·2012-05-10·CVSS 6.8
CVE-2012-2333 [MEDIUM] CVE-2012-2333 openssl: record length handling integer underflow
CVE-2012-2333 openssl: record length handling integer underflow
It was discovered that OpenSSL did not properly handle TLS record length values from the received TLS packets. After subtracting the number of padding bytes from the record length value, it did not check the resulting record length before subtracting the size of explicit IV (initialization vector for CBC encryption modes). This could result in an integer underflow of the record length value, leading to a buffer over-read and out-of-bounds access. A remote TLS peer could use this to crash an application using OpenSSL (usually a TLS or DTLS server) by sending a specially TLS packet.
Explicit IV is used in TLS 1.2, 1.1 and DTLS. The openssl packages in Red Hat Enterprise Linux 3, 4, 5, and 6 only support TLS 1.0 and do not supp
Bugzilla
CVE-2012-2333 openssl: record length handling integer underflow [fedora-all]
bugzilla·2012-05-10·CVSS 6.8
CVE-2012-2333 [MEDIUM] CVE-2012-2333 openssl: record length handling integer underflow [fedora-all]
CVE-2012-2333 openssl: record length handling integer underflow [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?type_=securit
Bugzilla
CVE-2012-2333 openssl: record length handling integer underflow [fedora-all]
bugzilla·2012-05-10·CVSS 6.8
CVE-2012-2333 [MEDIUM] CVE-2012-2333 openssl: record length handling integer underflow [fedora-all]
CVE-2012-2333 openssl: record length handling integer underflow [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?type_=securit
http://cvs.openssl.org/chngview?cn=22538http://cvs.openssl.org/chngview?cn=22547http://lists.apple.com/archives/security-announce/2013/Jun/msg00000.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2012-May/081460.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2012-November/092905.htmlhttp://lists.opensuse.org/opensuse-security-announce/2012-05/msg00019.htmlhttp://lists.opensuse.org/opensuse-security-announce/2012-05/msg00020.htmlhttp://marc.info/?l=bugtraq&m=134919053717161&w=2http://marc.info/?l=bugtraq&m=136432043316835&w=2http://rhn.redhat.com/errata/RHSA-2012-0699.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1306.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1307.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1308.htmlhttp://secunia.com/advisories/49116http://secunia.com/advisories/49208http://secunia.com/advisories/49324http://secunia.com/advisories/50768http://secunia.com/advisories/51312http://support.apple.com/kb/HT5784http://www.cert.fi/en/reports/2012/vulnerability641549.htmlhttp://www.debian.org/security/2012/dsa-2475http://www.kb.cert.org/vuls/id/737740http://www.mandriva.com/security/advisories?name=MDVSA-2012:073http://www.openssl.org/news/secadv_20120510.txthttp://www.securityfocus.com/bid/53476http://www.securitytracker.com/id?1027057https://bugzilla.redhat.com/show_bug.cgi?id=820686https://exchange.xforce.ibmcloud.com/vulnerabilities/75525http://cvs.openssl.org/chngview?cn=22538http://cvs.openssl.org/chngview?cn=22547http://lists.apple.com/archives/security-announce/2013/Jun/msg00000.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2012-May/081460.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2012-November/092905.htmlhttp://lists.opensuse.org/opensuse-security-announce/2012-05/msg00019.htmlhttp://lists.opensuse.org/opensuse-security-announce/2012-05/msg00020.htmlhttp://marc.info/?l=bugtraq&m=134919053717161&w=2http://marc.info/?l=bugtraq&m=136432043316835&w=2http://rhn.redhat.com/errata/RHSA-2012-0699.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1306.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1307.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1308.htmlhttp://secunia.com/advisories/49116http://secunia.com/advisories/49208http://secunia.com/advisories/49324http://secunia.com/advisories/50768http://secunia.com/advisories/51312http://support.apple.com/kb/HT5784http://www.cert.fi/en/reports/2012/vulnerability641549.htmlhttp://www.debian.org/security/2012/dsa-2475http://www.kb.cert.org/vuls/id/737740http://www.mandriva.com/security/advisories?name=MDVSA-2012:073http://www.openssl.org/news/secadv_20120510.txthttp://www.securityfocus.com/bid/53476http://www.securitytracker.com/id?1027057https://bugzilla.redhat.com/show_bug.cgi?id=820686https://exchange.xforce.ibmcloud.com/vulnerabilities/75525
2012-05-14
Published