CVE-2015-0282
published 2015-03-24CVE-2015-0282: GnuTLS before 3.1.0 does not verify that the RSA PKCS #1 signature algorithm matches the signature algorithm in the certificate, which allows remote attackers…
PriorityP425medium5CVSS 2.0
AVNACLAuNCNIPAN
EPSS
1.40%
69.6th percentile
GnuTLS before 3.1.0 does not verify that the RSA PKCS #1 signature algorithm matches the signature algorithm in the certificate, which allows remote attackers to conduct downgrade attacks via unspecified vectors.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | gnutls28 | — | — |
| gnu | gnutls | <= 3.0.9 | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
osv5.0MEDIUM
vendor_debian5.0LOW
vendor_redhat5.0MEDIUM
vendor_ubuntu4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-qx46-76qj-r7r3: GnuTLS before 3
ghsa_unreviewed·2022-05-14
CVE-2015-0282 [MEDIUM] GHSA-qx46-76qj-r7r3: GnuTLS before 3
GnuTLS before 3.1.0 does not verify that the RSA PKCS #1 signature algorithm matches the signature algorithm in the certificate, which allows remote attackers to conduct downgrade attacks via unspecified vectors.
OSV
gnutls26, gnutls28 vulnerabilities
osv·2015-03-23·CVSS 4.3
CVE-2014-8155 [MEDIUM] gnutls26, gnutls28 vulnerabilities
gnutls26, gnutls28 vulnerabilities
It was discovered that GnuTLS did not perform date and time checks on
CA certificates, contrary to expectations. This issue only affected
Ubuntu 10.04 LTS. (CVE-2014-8155)
Nikos Mavrogiannopoulos discovered that GnuTLS incorrectly verified that
signature algorithms matched. A remote attacker could possibly use this
issue to downgrade to a disallowed algorithm. This issue only affected
Ubuntu 10.04 LTS, Ubuntu 12.04 LTS and Ubuntu 14.04 LTS. (CVE-2015-0282)
It was discovered that GnuTLS incorrectly verified certificate algorithms.
A remote attacker could possibly use this issue to downgrade to a
disallowed algorithm. (CVE-2015-0294)
OSV
CVE-2015-0282: GnuTLS before 3
osv·2015-03-12·CVSS 5.0
CVE-2015-0282 [MEDIUM] CVE-2015-0282: GnuTLS before 3
GnuTLS before 3.1.0 does not verify that the RSA PKCS #1 signature algorithm matches the signature algorithm in the certificate, which allows remote attackers to conduct downgrade attacks via unspecified vectors.
Ubuntu
GnuTLS vulnerabilities
vendor_ubuntu·2015-03-23·CVSS 4.3
CVE-2014-8155 [MEDIUM] GnuTLS vulnerabilities
Title: GnuTLS vulnerabilities
Summary: Several security issues were fixed in GnuTLS.
It was discovered that GnuTLS did not perform date and time checks on
CA certificates, contrary to expectations. This issue only affected
Ubuntu 10.04 LTS. (CVE-2014-8155)
Nikos Mavrogiannopoulos discovered that GnuTLS incorrectly verified that
signature algorithms matched. A remote attacker could possibly use this
issue to downgrade to a disallowed algorithm. This issue only affected
Ubuntu 10.04 LTS, Ubuntu 12.04 LTS and Ubuntu 14.04 LTS. (CVE-2015-0282)
It was discovered that GnuTLS incorrectly verified certificate algorithms.
A remote attacker could possibly use this issue to downgrade to a
disallowed algorithm. (CVE-2015-0294)
Instructions: In general, a standard system update will make all the n
Red Hat
gnutls: RSA PKCS#1 signature verification forgery
vendor_redhat·2015-03-11·CVSS 5.0
CVE-2015-0282 [MEDIUM] CWE-295 gnutls: RSA PKCS#1 signature verification forgery
gnutls: RSA PKCS#1 signature verification forgery
GnuTLS before 3.1.0 does not verify that the RSA PKCS #1 signature algorithm matches the signature algorithm in the certificate, which allows remote attackers to conduct downgrade attacks via unspecified vectors.
It was found that GnuTLS did not verify whether a hashing algorithm listed in a signature matched the hashing algorithm listed in the certificate. An attacker could create a certificate that used a different hashing algorithm than it claimed, possibly causing GnuTLS to use an insecure, disallowed hashing algorithm during certificate verification.
Statement: This issue did not affect the version of gnutls package as shipped with Red Hat Enterprise Linux 7.
This issue affects the version of gnutls package as shipped with Red Hat E
Debian
CVE-2015-0282: gnutls28 - GnuTLS before 3.1.0 does not verify that the RSA PKCS #1 signature algorithm mat...
vendor_debian·2015·CVSS 5.0
CVE-2015-0282 [MEDIUM] CVE-2015-0282: gnutls28 - GnuTLS before 3.1.0 does not verify that the RSA PKCS #1 signature algorithm mat...
GnuTLS before 3.1.0 does not verify that the RSA PKCS #1 signature algorithm matches the signature algorithm in the certificate, which allows remote attackers to conduct downgrade attacks via unspecified vectors.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
No detection rules found.
No public exploits indexed.
http://rhn.redhat.com/errata/RHSA-2015-1457.htmlhttp://www.debian.org/security/2015/dsa-3191http://www.gnutls.org/security.htmlhttp://www.securityfocus.com/bid/73119http://www.securitytracker.com/id/1032148http://rhn.redhat.com/errata/RHSA-2015-1457.htmlhttp://www.debian.org/security/2015/dsa-3191http://www.gnutls.org/security.htmlhttp://www.securityfocus.com/bid/73119http://www.securitytracker.com/id/1032148
2015-03-24
Published