CVE-2014-0017
published 2014-03-14CVE-2014-0017: The RAND_bytes function in libssh before 0.6.3, when forking is enabled, does not properly reset the state of the OpenSSL pseudo-random number generator…
PriorityP45low1.9CVSS 2.0
AVLACMAuNCPINAN
EPSS
0.36%
28.2th percentile
The RAND_bytes function in libssh before 0.6.3, when forking is enabled, does not properly reset the state of the OpenSSL pseudo-random number generator (PRNG), which causes the state to be shared between children processes and allows local users to obtain sensitive information by leveraging a pid collision.
Affected
16 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | libssh | < libssh 0.5.4-3 (bookworm) | libssh 0.5.4-3 (bookworm) |
| libssh | libssh | <= 0.6.2 | — |
| libssh | libssh | — | — |
| libssh | libssh | — | — |
| libssh | libssh | — | — |
| libssh | libssh | — | — |
| libssh | libssh | — | — |
| libssh | libssh | — | — |
| libssh | libssh | — | — |
| libssh | libssh | — | — |
| libssh | libssh | — | — |
| libssh | libssh | — | — |
| libssh | libssh | >= 0 < 0.5.4-3 | 0.5.4-3 |
| libssh | libssh | >= 0 < 0.5.4-3 | 0.5.4-3 |
| libssh | libssh | >= 0 < 0.5.4-3 | 0.5.4-3 |
| libssh | libssh | >= 0 < 0.5.4-3 | 0.5.4-3 |
CVSS provenance
nvdv2.01.9LOWAV:L/AC:M/Au:N/C:P/I:N/A:N
osv1.9LOW
vendor_debian1.9LOW
vendor_redhat1.9LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
libssh vulnerability
vendor_ubuntu·2014-03-12
CVE-2014-0017 libssh vulnerability
Title: libssh vulnerability
Summary: A security issue was fixed in libssh.
Aris Adamantiadis discovered that libssh allowed the OpenSSL PRNG state to
be reused when implementing forking servers. This could allow an attacker
to possibly obtain information about the state of the PRNG and perform
cryptographic attacks.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
libssh: Improper initialization of PRNG after fork()
vendor_redhat·2014-03-04·CVSS 1.9
CVE-2014-0017 [LOW] libssh: Improper initialization of PRNG after fork()
libssh: Improper initialization of PRNG after fork()
The RAND_bytes function in libssh before 0.6.3, when forking is enabled, does not properly reset the state of the OpenSSL pseudo-random number generator (PRNG), which causes the state to be shared between children processes and allows local users to obtain sensitive information by leveraging a pid collision.
Statement: Not Vulnerable. This issue does not affect the version of libssh2 package as shipped with Red Hat Enterprise Linux 5 and 6.
Package: libssh2 (Red Hat Enterprise Linux 6) - Not affected
Package: libssh2 (Red Hat Enterprise Linux 7) - Not affected
Debian
CVE-2014-0017: libssh - The RAND_bytes function in libssh before 0.6.3, when forking is enabled, does no...
vendor_debian·2014·CVSS 1.9
CVE-2014-0017 [LOW] CVE-2014-0017: libssh - The RAND_bytes function in libssh before 0.6.3, when forking is enabled, does no...
The RAND_bytes function in libssh before 0.6.3, when forking is enabled, does not properly reset the state of the OpenSSL pseudo-random number generator (PRNG), which causes the state to be shared between children processes and allows local users to obtain sensitive information by leveraging a pid collision.
Scope: local
bookworm: resolved (fixed in 0.5.4-3)
bullseye: resolved (fixed in 0.5.4-3)
forky: resolved (fixed in 0.5.4-3)
sid: resolved (fixed in 0.5.4-3)
trixie: resolved (fixed in 0.5.4-3)
GHSA
GHSA-mw96-qp3x-6qgr: The RAND_bytes function in libssh before 0
ghsa_unreviewed·2022-05-17
CVE-2014-0017 [LOW] GHSA-mw96-qp3x-6qgr: The RAND_bytes function in libssh before 0
The RAND_bytes function in libssh before 0.6.3, when forking is enabled, does not properly reset the state of the OpenSSL pseudo-random number generator (PRNG), which causes the state to be shared between children processes and allows local users to obtain sensitive information by leveraging a pid collision.
OSV
CVE-2014-0017: The RAND_bytes function in libssh before 0
osv·2014-03-14·CVSS 1.9
CVE-2014-0017 [LOW] CVE-2014-0017: The RAND_bytes function in libssh before 0
The RAND_bytes function in libssh before 0.6.3, when forking is enabled, does not properly reset the state of the OpenSSL pseudo-random number generator (PRNG), which causes the state to be shared between children processes and allows local users to obtain sensitive information by leveraging a pid collision.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2014-0213 CVE-2014-0214 CVE-2014-0215 CVE-2014-0216 CVE-2014-0217 CVE-2014-0218 moodle: upstream 2.7, 2.6.3, 2.5.6, and 2.4.10 security fixes
bugzilla·2014-05-21·CVSS 6.8
CVE-2014-0213 [MEDIUM] CVE-2014-0213 CVE-2014-0214 CVE-2014-0215 CVE-2014-0216 CVE-2014-0217 CVE-2014-0218 moodle: upstream 2.7, 2.6.3, 2.5.6, and 2.4.10 security fixes
CVE-2014-0213 CVE-2014-0214 CVE-2014-0215 CVE-2014-0216 CVE-2014-0217 CVE-2014-0218 moodle: upstream 2.7, 2.6.3, 2.5.6, and 2.4.10 security fixes
Moodle upstream has released versions 2.7, 2.6.3, 2.5.6, and 2.4.10 to fix the following security flaws:
CVE-2014-0213 MSA-14-0014: Cross-site request forgery possible in Assignment
CVE-2014-0214 MSA-14-0015: Web service token expiry issue for MoodleMobile
CVE-2014-0215 MSA-14-0016: Anonymous student identity revealed in assignment
CVE-2014-0216 MSA-14-0017: File access issue in HTML block
CVE-2014-0217 MSA-14-0018: Information leak in courses
CVE-2014-0218 MSA-14-0019: Reflected XSS in URL downloader repository
For a full summary and patch links, refer to the following:
http://seclists.org/oss-sec/2014/q2/329
Discussion:
Created moodle tra
Bugzilla
CVE-2014-0017 libssh: Improper initialization of PRNG after fork() [epel-5]
bugzilla·2014-03-05·CVSS 1.9
CVE-2014-0017 [LOW] CVE-2014-0017 libssh: Improper initialization of PRNG after fork() [epel-5]
CVE-2014-0017 libssh: Improper initialization of PRNG after fork() [epel-5]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
epel-5 tracking bug for
Bugzilla
CVE-2014-0017 libssh: Improper initialization of PRNG after fork() [fedora-all]
bugzilla·2014-03-05·CVSS 1.9
CVE-2014-0017 [LOW] CVE-2014-0017 libssh: Improper initialization of PRNG after fork() [fedora-all]
CVE-2014-0017 libssh: Improper initialization of PRNG after fork() [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Please note: this issue a
Bugzilla
CVE-2014-0017 libssh: Improper initialization of PRNG after fork() [epel-6]
bugzilla·2014-03-05·CVSS 1.9
CVE-2014-0017 [LOW] CVE-2014-0017 libssh: Improper initialization of PRNG after fork() [epel-6]
CVE-2014-0017 libssh: Improper initialization of PRNG after fork() [epel-6]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
epel-6 tracking bug for
Bugzilla
CVE-2014-0017 libssh: Improper initialization of PRNG after fork()
bugzilla·2014-03-04·CVSS 1.9
CVE-2014-0017 [LOW] CVE-2014-0017 libssh: Improper initialization of PRNG after fork()
CVE-2014-0017 libssh: Improper initialization of PRNG after fork()
A flaw was found in libssh server. When accepting a new connection, the server forks and the child process handles the request. The RAND_bytes() function of openssl doesn't reset its state after the fork, but simply adds the current process id (getpid) to the PRNG state, which is not guaranteed to be unique. The most important consequence is that servers using EC (ECDSA) or DSA certificates may under certain conditions leak their private key.
Discussion:
Acknowledgements:
Red Hat would like to thank Aris Adamantiadis for reporting this issue.
---
Public via:
http://git.libssh.org/projects/libssh.git/commit/?id=e99246246b4061f7e71463f8806b9dcad65affa0
This issue is addressed in upstream release of libssh-0.6.3:
http
http://lists.opensuse.org/opensuse-updates/2014-03/msg00036.htmlhttp://lists.opensuse.org/opensuse-updates/2014-03/msg00040.htmlhttp://secunia.com/advisories/57407http://www.debian.org/security/2014/dsa-2879http://www.libssh.org/2014/03/04/libssh-0-6-3-security-release/http://www.openwall.com/lists/oss-security/2014/03/05/1http://www.ubuntu.com/usn/USN-2145-1https://bugzilla.redhat.com/show_bug.cgi?id=1072191http://lists.opensuse.org/opensuse-updates/2014-03/msg00036.htmlhttp://lists.opensuse.org/opensuse-updates/2014-03/msg00040.htmlhttp://secunia.com/advisories/57407http://www.debian.org/security/2014/dsa-2879http://www.libssh.org/2014/03/04/libssh-0-6-3-security-release/http://www.openwall.com/lists/oss-security/2014/03/05/1http://www.ubuntu.com/usn/USN-2145-1https://bugzilla.redhat.com/show_bug.cgi?id=1072191
2014-03-14
Published