CVE-2013-4314
published 2013-09-30CVE-2013-4314: The X509Extension in pyOpenSSL before 0.13.1 does not properly handle a '\0' character in a domain name in the Subject Alternative Name field of an X.509…
PriorityP422medium4.3CVSS 2.0
AVNACMAuNCNIPAN
EPSS
1.20%
64.6th percentile
The X509Extension in pyOpenSSL before 0.13.1 does not properly handle a '\0' character in a domain name in the Subject Alternative Name field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority.
Affected
17 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | pyopenssl | < pyopenssl 0.13-2.1 (bookworm) | pyopenssl 0.13-2.1 (bookworm) |
| jean-paul_calderone | pyopenssl | <= 0.13 | — |
| jean-paul_calderone | pyopenssl | — | — |
| jean-paul_calderone | pyopenssl | — | — |
| jean-paul_calderone | pyopenssl | — | — |
| jean-paul_calderone | pyopenssl | — | — |
| jean-paul_calderone | pyopenssl | — | — |
| jean-paul_calderone | pyopenssl | — | — |
| pyopenssl | pyopenssl | >= 0 < 0.13-2.1 | 0.13-2.1 |
| pyopenssl | pyopenssl | >= 0 < 0.13-2.1 | 0.13-2.1 |
| pyopenssl | pyopenssl | >= 0 < 0.13-2.1 | 0.13-2.1 |
| pyopenssl | pyopenssl | >= 0 < 0.13-2.1 | 0.13-2.1 |
| pyopenssl | pyopenssl | >= 0 < 0.13.1 | 0.13.1 |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
osv4.3MEDIUM
vendor_debian4.3MEDIUM
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
pyOpenSSL vulnerability
vendor_ubuntu·2013-09-23
CVE-2013-4314 pyOpenSSL vulnerability
Title: pyOpenSSL vulnerability
Summary: Fraudulent security certificates could allow sensitive information to be
exposed when accessing the Internet.
It was discovered that pyOpenSSL did not properly handle certificates with
NULL characters in the Subject Alternative Name field. An attacker could
exploit this to perform a machine-in-the-middle attack to view sensitive
information or alter encrypted communications.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
pyOpenSSL: hostname check bypassing vulnerability
vendor_redhat·2013-09-04·CVSS 4.3
CVE-2013-4314 [MEDIUM] pyOpenSSL: hostname check bypassing vulnerability
pyOpenSSL: hostname check bypassing vulnerability
The X509Extension in pyOpenSSL before 0.13.1 does not properly handle a '\0' character in a domain name in the Subject Alternative Name field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority.
Statement: Not vulnerable. This issue did not affect the versions of pyOpenSSL as shipped with Red Hat Enterprise Linux 5 and 6.
Package: pyOpenSSL (Red Hat Enterprise Linux 5) - Not affected
Package: pyOpenSSL (Red Hat Enterprise Linux 6) - Not affected
Package: pyOpenSSL (Red Hat Enterprise Linux 7) - Not affected
Package: pyOpenSSL (Red Hat OpenStack Platform 4) - Not affected
Package: pyOpenSSL (Red Hat Storage 2.1) - Not
Debian
CVE-2013-4314: pyopenssl - The X509Extension in pyOpenSSL before 0.13.1 does not properly handle a '\0' cha...
vendor_debian·2013·CVSS 4.3
CVE-2013-4314 [MEDIUM] CVE-2013-4314: pyopenssl - The X509Extension in pyOpenSSL before 0.13.1 does not properly handle a '\0' cha...
The X509Extension in pyOpenSSL before 0.13.1 does not properly handle a '\0' character in a domain name in the Subject Alternative Name field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority.
Scope: local
bookworm: resolved (fixed in 0.13-2.1)
bullseye: resolved (fixed in 0.13-2.1)
forky: resolved (fixed in 0.13-2.1)
sid: resolved (fixed in 0.13-2.1)
trixie: resolved (fixed in 0.13-2.1)
GHSA
PyOpenSSL Mishandles NUL Byte In Certificate Subject Alternative Name
ghsa·2022-05-17
CVE-2013-4314 [HIGH] CWE-20 PyOpenSSL Mishandles NUL Byte In Certificate Subject Alternative Name
PyOpenSSL Mishandles NUL Byte In Certificate Subject Alternative Name
The X509Extension in pyOpenSSL before 0.13.1 does not properly handle a `\0` character in a domain name in the Subject Alternative Name field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority.
OSV
PyOpenSSL Mishandles NUL Byte In Certificate Subject Alternative Name
osv·2022-05-17
CVE-2013-4314 [HIGH] PyOpenSSL Mishandles NUL Byte In Certificate Subject Alternative Name
PyOpenSSL Mishandles NUL Byte In Certificate Subject Alternative Name
The X509Extension in pyOpenSSL before 0.13.1 does not properly handle a `\0` character in a domain name in the Subject Alternative Name field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority.
OSV
CVE-2013-4314: The X509Extension in pyOpenSSL before 0
osv·2013-09-30·CVSS 4.3
CVE-2013-4314 [MEDIUM] CVE-2013-4314: The X509Extension in pyOpenSSL before 0
The X509Extension in pyOpenSSL before 0.13.1 does not properly handle a '\0' character in a domain name in the Subject Alternative Name field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority.
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-updates/2013-11/msg00015.htmlhttp://www.debian.org/security/2013/dsa-2763http://www.openwall.com/lists/oss-security/2013/09/06/2http://www.ubuntu.com/usn/USN-1965-1https://bugzilla.redhat.com/show_bug.cgi?id=1005325https://mail.python.org/pipermail/pyopenssl-users/2013-September/000478.htmlhttp://lists.opensuse.org/opensuse-updates/2013-11/msg00015.htmlhttp://www.debian.org/security/2013/dsa-2763http://www.openwall.com/lists/oss-security/2013/09/06/2http://www.ubuntu.com/usn/USN-1965-1https://bugzilla.redhat.com/show_bug.cgi?id=1005325https://mail.python.org/pipermail/pyopenssl-users/2013-September/000478.html
2013-09-30
Published