CVE-2015-6418
published 2015-12-13CVE-2015-6418: The random-number generator on Cisco Small Business RV routers 4.x and SA500 security appliances 2.2.07 does not have sufficient entropy, which makes it easier…
PriorityP423medium4.3CVSS 2.0
AVNACMAuNCPINAN
EPSS
1.84%
76.7th percentile
The random-number generator on Cisco Small Business RV routers 4.x and SA500 security appliances 2.2.07 does not have sufficient entropy, which makes it easier for remote attackers to determine a TLS key pair via unspecified computations upon handshake key-exchange data, aka Bug ID CSCus15224.
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | rv016_multi-wan_vpn_firmware | — | — |
| cisco | rv016_multi-wan_vpn_firmware | — | — |
| cisco | rv016_multi-wan_vpn_firmware | — | — |
| cisco | rv042_dual_wan_vpn_router_firmware | — | — |
| cisco | rv042g_dual_gigabit_wan_vpn_firmware | — | — |
| cisco | rv042g_dual_gigabit_wan_vpn_firmware | — | — |
| cisco | rv042g_dual_gigabit_wan_vpn_firmware | — | — |
| cisco | rv082_dual_wan_vpn_router_firmware | — | — |
| cisco | rv082_dual_wan_vpn_router_firmware | — | — |
| cisco | sa520 | — | — |
| cisco | sa520w | — | — |
| cisco | sa540 | — | — |
| cisco | small_business_rv_series_and_sa500_series_dual_wan_vpn_router_generated_key_pair | — | — |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
vendor_cisco4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Small Business RV Series and SA500 Series Dual WAN VPN Router Generated Key Pair Information Disclosure Vulnerability
vendor_cisco·2015-12-11·CVSS 4.3
CVE-2015-6418 [MEDIUM] CWE-200 Cisco Small Business RV Series and SA500 Series Dual WAN VPN Router Generated Key Pair Information Disclosure Vulnerability
Cisco Small Business RV Series and SA500 Series Dual WAN VPN Router Generated Key Pair Information Disclosure Vulnerability
A vulnerability in the HTTPS session key exchange process of certain Cisco Small Business RV Series Routers and Cisco SA500 Series Security Appliances could allow an unauthenticated, remote attacker to obtain the key pair used in the Transport Layer Security (TLS) session from the affected device.
The vulnerability is due to insufficient sources of entropy used by the random number generator. An attacker could exploit this vulnerability by gathering large amounts of TLS handshake data to predict the random numbers generated for the key pair. An exploit could allow the attacker to decrypt session data between a host and the affected device.
Cisco has released softwa
Cisco
Cisco Small Business RV Series and SA500 Series Dual WAN VPN Router Generated Key Pair Information Disclosure Vulnerability
vendor_cisco
CVE-2015-6418 Cisco Small Business RV Series and SA500 Series Dual WAN VPN Router Generated Key Pair Information Disclosure Vulnerability
CVE-2015-6418: Cisco Small Business RV Series and SA500 Series Dual WAN VPN Router Generated Key Pair Information Disclosure Vulnerability
A vulnerability in the HTTPS session key exchange process of certain Cisco Small Business RV Series Routers and Cisco SA500 Series Security Appliances could allow an unauthenticated, remote attacker to obtain the key pair used in the Transport Layer Security (TLS) session from the affected device. The vulnerability is due to insufficient sources of entropy used by the random number generator. An attacker could exploit this vulnerability by gathering large amounts of TLS handshake data to predict the random numbers generated for the key pair. An exploit could allow the attacker to decrypt session data between a host and the affected device. Cisco has rel
GHSA
GHSA-9rcv-p8fh-p3ch: The random-number generator on Cisco Small Business RV routers 4
ghsa_unreviewed·2022-05-17
CVE-2015-6418 [MEDIUM] CWE-200 GHSA-9rcv-p8fh-p3ch: The random-number generator on Cisco Small Business RV routers 4
The random-number generator on Cisco Small Business RV routers 4.x and SA500 security appliances 2.2.07 does not have sufficient entropy, which makes it easier for remote attackers to determine a TLS key pair via unspecified computations upon handshake key-exchange data, aka Bug ID CSCus15224.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151210-dwvrhttp://www.securityfocus.com/bid/78876http://www.securitytracker.com/id/1034408http://www.securitytracker.com/id/1034409http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151210-dwvrhttp://www.securityfocus.com/bid/78876http://www.securitytracker.com/id/1034408http://www.securitytracker.com/id/1034409
2015-12-13
Published