CVE-2017-12868
published 2017-09-01CVE-2017-12868: The secureCompare method in lib/SimpleSAML/Utils/Crypto.php in SimpleSAMLphp 1.14.13 and earlier, when used with PHP before 5.6, allows attackers to conduct…
PriorityP352critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
ITW
Exploited in the wild
EPSS
2.13%
79.9th percentile
The secureCompare method in lib/SimpleSAML/Utils/Crypto.php in SimpleSAMLphp 1.14.13 and earlier, when used with PHP before 5.6, allows attackers to conduct session fixation attacks or possibly bypass authentication by leveraging missing character conversions before an XOR operation.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | simplesamlphp | < simplesamlphp 1.14.15-1 (bookworm) | simplesamlphp 1.14.15-1 (bookworm) |
| simplesamlphp | simplesamlphp | <= 1.14.13 | — |
| simplesamlphp | simplesamlphp | >= 0 < 1.14.15-1 | 1.14.15-1 |
| simplesamlphp | simplesamlphp | >= 0 < 1.14.15-1 | 1.14.15-1 |
| simplesamlphp | simplesamlphp | >= 1.14.12 < 1.14.14 | 1.14.14 |
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
vendor_debian9.8CRITICAL
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
SimpleSAMLphp Session fixation issue and authentication bypass in the authcrypt module
osv·2022-05-14
CVE-2017-12868 [CRITICAL] SimpleSAMLphp Session fixation issue and authentication bypass in the authcrypt module
SimpleSAMLphp Session fixation issue and authentication bypass in the authcrypt module
The secureCompare method in lib/SimpleSAML/Utils/Crypto.php in SimpleSAMLphp 1.14.13 and earlier, when used with PHP before 5.6, allows attackers to conduct session fixation attacks or possibly bypass authentication by leveraging missing character conversions before an XOR operation.
GHSA
SimpleSAMLphp Session fixation issue and authentication bypass in the authcrypt module
ghsa·2022-05-14
CVE-2017-12868 [CRITICAL] CWE-384 SimpleSAMLphp Session fixation issue and authentication bypass in the authcrypt module
SimpleSAMLphp Session fixation issue and authentication bypass in the authcrypt module
The secureCompare method in lib/SimpleSAML/Utils/Crypto.php in SimpleSAMLphp 1.14.13 and earlier, when used with PHP before 5.6, allows attackers to conduct session fixation attacks or possibly bypass authentication by leveraging missing character conversions before an XOR operation.
OSV
CVE-2017-12868: The secureCompare method in lib/SimpleSAML/Utils/Crypto
osv·2017-09-01·CVSS 9.8
CVE-2017-12868 [CRITICAL] CVE-2017-12868: The secureCompare method in lib/SimpleSAML/Utils/Crypto
The secureCompare method in lib/SimpleSAML/Utils/Crypto.php in SimpleSAMLphp 1.14.13 and earlier, when used with PHP before 5.6, allows attackers to conduct session fixation attacks or possibly bypass authentication by leveraging missing character conversions before an XOR operation.
Debian
CVE-2017-12868: simplesamlphp - The secureCompare method in lib/SimpleSAML/Utils/Crypto.php in SimpleSAMLphp 1.1...
vendor_debian·2017·CVSS 9.8
CVE-2017-12868 [CRITICAL] CVE-2017-12868: simplesamlphp - The secureCompare method in lib/SimpleSAML/Utils/Crypto.php in SimpleSAMLphp 1.1...
The secureCompare method in lib/SimpleSAML/Utils/Crypto.php in SimpleSAMLphp 1.14.13 and earlier, when used with PHP before 5.6, allows attackers to conduct session fixation attacks or possibly bypass authentication by leveraging missing character conversions before an XOR operation.
Scope: local
bookworm: resolved (fixed in 1.14.15-1)
bullseye: resolved (fixed in 1.14.15-1)
sid: resolved (fixed in 1.14.15-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://github.com/simplesamlphp/simplesamlphp/commit/4bc629658e7b7d17c9ac3fe0da7dc5df71f1b85ehttps://lists.debian.org/debian-lts-announce/2017/12/msg00007.htmlhttps://lists.debian.org/debian-lts-announce/2018/06/msg00017.htmlhttps://simplesamlphp.org/security/201705-01https://github.com/simplesamlphp/simplesamlphp/commit/4bc629658e7b7d17c9ac3fe0da7dc5df71f1b85ehttps://lists.debian.org/debian-lts-announce/2017/12/msg00007.htmlhttps://lists.debian.org/debian-lts-announce/2018/06/msg00017.htmlhttps://simplesamlphp.org/security/201705-01
2017-09-01
Published
Exploited in the wild