CVE-2015-8867
published 2016-05-22CVE-2015-8867: The openssl_random_pseudo_bytes function in ext/openssl/openssl.c in PHP before 5.4.44, 5.5.x before 5.5.28, and 5.6.x before 5.6.12 incorrectly relies on the…
PriorityP344high7.5CVSS 3.0
AVNACLPRNUINSUCHINAN
EPSS
4.35%
90.1th percentile
The openssl_random_pseudo_bytes function in ext/openssl/openssl.c in PHP before 5.4.44, 5.5.x before 5.5.28, and 5.6.x before 5.6.12 incorrectly relies on the deprecated RAND_pseudo_bytes function, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via unspecified vectors.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| php | php | >= 5.4.0 < 5.4.44 | 5.4.44 |
| php | php | >= 5.5.0 < 5.5.28 | 5.5.28 |
| php | php | >= 5.6.0 < 5.6.12 | 5.6.12 |
| php5 | php5 | >= 0 < 5.5.9+dfsg-1ubuntu4.16 | 5.5.9+dfsg-1ubuntu4.16 |
CVSS provenance
nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
osv7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
php: openssl_random_pseudo_bytes() is not cryptographically secure
vendor_redhat·2016-04-21·CVSS 7.5
CVE-2015-8867 [HIGH] php: openssl_random_pseudo_bytes() is not cryptographically secure
php: openssl_random_pseudo_bytes() is not cryptographically secure
The openssl_random_pseudo_bytes function in ext/openssl/openssl.c in PHP before 5.4.44, 5.5.x before 5.5.28, and 5.6.x before 5.6.12 incorrectly relies on the deprecated RAND_pseudo_bytes function, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via unspecified vectors.
Package: php (Red Hat Enterprise Linux 5) - Will not fix
Package: php53 (Red Hat Enterprise Linux 5) - Will not fix
Package: php (Red Hat Enterprise Linux 6) - Will not fix
Package: php (Red Hat Enterprise Linux 7) - Will not fix
Package: php54-php (Red Hat Software Collections) - Will not fix
Package: php55-php (Red Hat Software Collections) - Will not fix
GHSA
GHSA-33q5-mhvx-53mf: The openssl_random_pseudo_bytes function in ext/openssl/openssl
ghsa_unreviewed·2022-05-14
CVE-2015-8867 [HIGH] GHSA-33q5-mhvx-53mf: The openssl_random_pseudo_bytes function in ext/openssl/openssl
The openssl_random_pseudo_bytes function in ext/openssl/openssl.c in PHP before 5.4.44, 5.5.x before 5.5.28, and 5.6.x before 5.6.12 incorrectly relies on the deprecated RAND_pseudo_bytes function, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via unspecified vectors.
OSV
CVE-2015-8867: The openssl_random_pseudo_bytes function in ext/openssl/openssl
osv·2016-05-22·CVSS 7.5
CVE-2015-8867 [HIGH] CVE-2015-8867: The openssl_random_pseudo_bytes function in ext/openssl/openssl
The openssl_random_pseudo_bytes function in ext/openssl/openssl.c in PHP before 5.4.44, 5.5.x before 5.5.28, and 5.6.x before 5.6.12 incorrectly relies on the deprecated RAND_pseudo_bytes function, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via unspecified vectors.
No detection rules found.
No public exploits indexed.
arXiv
Herding Vulnerable Cats: A Statistical Approach to Disentangle Joint Responsibility for Web Security in Shared Hosting
arxiv_fulltext·2017-08-22
Herding Vulnerable Cats: A Statistical Approach to Disentangle Joint Responsibility for Web Security in Shared Hosting
printacmref=false, printfolios=false
Herding Vulnerable Cats: A Statistical Approach to Disentangle Joint Responsibility for Web Security in Shared Hosting
Samaneh Tajalizadehkhoob
Delft University of Technology
Tom van Goethem
imec-DistriNet, KU Leuven
Maciej Korczy\'nski
Delft University of Technology
Arman Noroozian
Delft University of Technology
Rainer B\"ohme
Innsbruck University
Tyler Moore
The University of Tulsa
Wouter Joosen
imec-DistriNet, KU Leuven
Michel van Eeten
Delft University of Technology
## Abstract
Hosting providers play a key role in fighting web compromise, but their ability to prevent abuse is constrained by the security practices of their own customers. Shared hosting,
offers a unique perspective since customers operate under restricted privileges and pr
Bugzilla
CVE-2015-8867 php: openssl_random_pseudo_bytes() is not cryptographically secure
bugzilla·2016-04-26·CVSS 7.5
CVE-2015-8867 [HIGH] CVE-2015-8867 php: openssl_random_pseudo_bytes() is not cryptographically secure
CVE-2015-8867 php: openssl_random_pseudo_bytes() is not cryptographically secure
It was discovered that the PHP openssl_random_pseudo_bytes() function did not return cryptographically strong pseudo-random bytes.
Upstream bug:
https://bugs.php.net/bug.php?id=70014
Upstream patch:
https://git.php.net/?p=php-src.git;a=commit;h=16023f3e3b9c06cf677c3c980e8d574e4c162827
Discussion:
Fixed in Fedora:
php-5.6.20-1.fc23
php-5.6.20-1.fc24
php-5.6.20-1.fc22
---
Fixed since 5.4.44, 5.5.22, 5.6.6
---
This issue has been addressed in the following products:
Red Hat Software Collections for Red Hat Enterprise Linux 6
Red Hat Software Collections for Red Hat Enterprise Linux 6.7 EUS
Red Hat Software Collections for Red Hat Enterprise Linux 7
Red Hat Software Collections for Red Hat Enterprise
http://git.php.net/?p=php-src.git%3Ba=commit%3Bh=16023f3e3b9c06cf677c3c980e8d574e4c162827http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00031.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-05/msg00033.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-05/msg00056.htmlhttp://rhn.redhat.com/errata/RHSA-2016-2750.htmlhttp://www.openwall.com/lists/oss-security/2016/04/24/1http://www.php.net/ChangeLog-5.phphttp://www.php.net/ChangeLog-7.phphttp://www.ubuntu.com/usn/USN-2952-1http://www.ubuntu.com/usn/USN-2952-2https://bugs.launchpad.net/ubuntu/+source/php5/+bug/1534203https://bugs.php.net/bug.php?id=70014http://git.php.net/?p=php-src.git%3Ba=commit%3Bh=16023f3e3b9c06cf677c3c980e8d574e4c162827http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00031.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-05/msg00033.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-05/msg00056.htmlhttp://rhn.redhat.com/errata/RHSA-2016-2750.htmlhttp://www.openwall.com/lists/oss-security/2016/04/24/1http://www.php.net/ChangeLog-5.phphttp://www.php.net/ChangeLog-7.phphttp://www.ubuntu.com/usn/USN-2952-1http://www.ubuntu.com/usn/USN-2952-2https://bugs.launchpad.net/ubuntu/+source/php5/+bug/1534203https://bugs.php.net/bug.php?id=70014
2016-05-22
Published