CVE-2017-17688
published 2018-05-16CVE-2017-17688: The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL. NOTE…
PriorityP433medium5.9CVSS 3.0
AVNACHPRNUINSUCHINAN
EPSS
5.57%
92.0th percentile
The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL. NOTE: third parties report that this is a problem in applications that mishandle the Modification Detection Code (MDC) feature or accept an obsolete packet type, not a problem in the OpenPGP specification
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | enigmail | < enigmail 2:2.0.6.1-4 (bullseye) | enigmail 2:2.0.6.1-4 (bullseye) |
| debian | roundcube | < roundcube 1.3.8+dfsg.1-1 (bookworm) | roundcube 1.3.8+dfsg.1-1 (bookworm) |
| enigmail | enigmail | >= 0 < 2:2.0.6.1-4 | 2:2.0.6.1-4 |
| enigmail | enigmail | >= 0 < 2:2.0.8-1~ubuntu0.16.04.2 | 2:2.0.8-1~ubuntu0.16.04.2 |
| microsoft | outlook | — | — |
| roundcube | webmail | < 1.3.7 | 1.3.7 |
CVSS provenance
nvdv3.05.9MEDIUMCVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
osv5.9MEDIUM
vendor_debian5.9MEDIUM
vendor_redhat5.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-mf49-p66v-cw5m: Roundcube before 1
ghsa_unreviewed·2022-05-13·CVSS 5.9
CVE-2018-19205 [MEDIUM] CWE-200 GHSA-mf49-p66v-cw5m: Roundcube before 1
Roundcube before 1.3.7 mishandles GnuPG MDC integrity-protection warnings, which makes it easier for attackers to obtain sensitive information, a related issue to CVE-2017-17688. This is associated with plugins/enigma/lib/enigma_driver_gnupg.php.
GHSA
GHSA-87q6-mg5f-mp98: ** DISPUTED ** The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadget attack that can indirectly lead to plaintext exfiltra
ghsa_unreviewed·2022-05-13
CVE-2017-17688 [MEDIUM] GHSA-87q6-mg5f-mp98: ** DISPUTED ** The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadget attack that can indirectly lead to plaintext exfiltra
** DISPUTED ** The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL. NOTE: third parties report that this is a problem in applications that mishandle the Modification Detection Code (MDC) feature or accept an obsolete packet type, not a problem in the OpenPGP specification.
OSV
CVE-2018-19205: Roundcube before 1
osv·2018-11-12·CVSS 5.9
CVE-2018-19205 [MEDIUM] CVE-2018-19205: Roundcube before 1
Roundcube before 1.3.7 mishandles GnuPG MDC integrity-protection warnings, which makes it easier for attackers to obtain sensitive information, a related issue to CVE-2017-17688. This is associated with plugins/enigma/lib/enigma_driver_gnupg.php.
OSV
CVE-2017-17688: ** DISPUTED ** The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadget attack that can indirectly lead to plaintext exfiltra
osv·2018-05-16·CVSS 5.9
CVE-2017-17688 [MEDIUM] CVE-2017-17688: ** DISPUTED ** The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadget attack that can indirectly lead to plaintext exfiltra
** DISPUTED ** The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL. NOTE: third parties report that this is a problem in applications that mishandle the Modification Detection Code (MDC) feature or accept an obsolete packet type, not a problem in the OpenPGP specification.
OSV
CVE-2017-17688: The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL
osv·2018-05-16·CVSS 5.9
CVE-2017-17688 [MEDIUM] CVE-2017-17688: The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL
The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL. NOTE: third parties report that this is a problem in applications that mishandle the Modification Detection Code (MDC) feature or accept an obsolete packet type, not a problem in the OpenPGP specification
Red Hat
OpenPGP: CFB gadget attacks allows to exfiltrate plaintext out of encrypted emails
vendor_redhat·2018-05-14·CVSS 5.9
CVE-2017-17688 [MEDIUM] CWE-200 OpenPGP: CFB gadget attacks allows to exfiltrate plaintext out of encrypted emails
OpenPGP: CFB gadget attacks allows to exfiltrate plaintext out of encrypted emails
The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL. NOTE: third parties report that this is a problem in applications that mishandle the Modification Detection Code (MDC) feature or accept an obsolete packet type, not a problem in the OpenPGP specification
Statement: The research paper talks about use of HTML as a back channel to create an oracle for modified encrypted emails. HTML emails which use external links like "" can cause security issues if they are honored by the MUAs. Due to flaws in MIME parsers many MUAs seem to concatenate decrypted HTML mine parts which makes it easy to plan such snippets in H
Debian
CVE-2018-19205: roundcube - Roundcube before 1.3.7 mishandles GnuPG MDC integrity-protection warnings, which...
vendor_debian·2018·CVSS 5.9
CVE-2018-19205 [MEDIUM] CVE-2018-19205: roundcube - Roundcube before 1.3.7 mishandles GnuPG MDC integrity-protection warnings, which...
Roundcube before 1.3.7 mishandles GnuPG MDC integrity-protection warnings, which makes it easier for attackers to obtain sensitive information, a related issue to CVE-2017-17688. This is associated with plugins/enigma/lib/enigma_driver_gnupg.php.
Scope: local
bookworm: resolved (fixed in 1.3.8+dfsg.1-1)
bullseye: resolved (fixed in 1.3.8+dfsg.1-1)
forky: resolved (fixed in 1.3.8+dfsg.1-1)
sid: resolved (fixed in 1.3.8+dfsg.1-1)
trixie: resolved (fixed in 1.3.8+dfsg.1-1)
Debian
CVE-2017-17688: enigmail - The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadge...
vendor_debian·2017·CVSS 5.9
CVE-2017-17688 [MEDIUM] CVE-2017-17688: enigmail - The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadge...
The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL. NOTE: third parties report that this is a problem in applications that mishandle the Modification Detection Code (MDC) feature or accept an obsolete packet type, not a problem in the OpenPGP specification
Scope: local
bullseye: resolved (fixed in 2:2.0.6.1-4)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2017-17688 CVE-2017-17689 thunderbird: various flaws [fedora-all]
bugzilla·2018-05-14·CVSS 5.9
CVE-2017-17688 [MEDIUM] CVE-2017-17688 CVE-2017-17689 thunderbird: various flaws [fedora-all]
CVE-2017-17688 CVE-2017-17689 thunderbird: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions of Fedo
Bugzilla
CVE-2017-17688 CVE-2017-17689 trojita: various flaws [fedora-all]
bugzilla·2018-05-14·CVSS 5.9
CVE-2017-17688 [MEDIUM] CVE-2017-17688 CVE-2017-17689 trojita: various flaws [fedora-all]
CVE-2017-17688 CVE-2017-17689 trojita: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions of Fedora.
Bugzilla
CVE-2017-17688 CVE-2017-17689 thunderbird-enigmail: various flaws [fedora-all]
bugzilla·2018-05-14·CVSS 5.9
CVE-2017-17688 [MEDIUM] CVE-2017-17688 CVE-2017-17689 thunderbird-enigmail: various flaws [fedora-all]
CVE-2017-17688 CVE-2017-17689 thunderbird-enigmail: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported version
Bugzilla
CVE-2017-17688 OpenPGP: CFB gadget attacks allows to exfiltrate plaintext out of encrypted emails
bugzilla·2018-05-14·CVSS 5.9
CVE-2017-17688 [MEDIUM] CVE-2017-17688 OpenPGP: CFB gadget attacks allows to exfiltrate plaintext out of encrypted emails
CVE-2017-17688 OpenPGP: CFB gadget attacks allows to exfiltrate plaintext out of encrypted emails
Vulnerabilities in OpenPGP specification can be abused by so-called CFB gadget attacks to exfiltrate the plaintext from encrypted email. Attacker having access to encrypted emails of a victim can modify them to inject an image tag into them and create a single encrypted body part that exfiltrates its own plaintext when the victim opens the attacker email.
External References:
https://efail.de/
Discussion:
Created evolution tracking bugs for this issue:
Affects: fedora-all [bug 1577910]
Created kmail tracking bugs for this issue:
Affects: fedora-all [bug 1577911]
Created thunderbird tracking bugs for this issue:
Affects: fedora-all [bug 1577914]
Created thunderbird-enigmail tracki
Bugzilla
CVE-2017-17688 CVE-2017-17689 kmail: various flaws [fedora-all]
bugzilla·2018-05-14·CVSS 5.9
CVE-2017-17688 [MEDIUM] CVE-2017-17688 CVE-2017-17689 kmail: various flaws [fedora-all]
CVE-2017-17688 CVE-2017-17689 kmail: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions of Fedora. Wh
Bugzilla
CVE-2017-17688 CVE-2017-17689 thunderbird-enigmail: various flaws [epel-7]
bugzilla·2018-05-14·CVSS 5.9
CVE-2017-17688 [MEDIUM] CVE-2017-17688 CVE-2017-17689 thunderbird-enigmail: various flaws [epel-7]
CVE-2017-17688 CVE-2017-17689 thunderbird-enigmail: various flaws [epel-7]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-7.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discussion:
Use the following template to for the 'fedpkg
Bugzilla
CVE-2017-17688 CVE-2017-17689 trojita: various flaws [epel-7]
bugzilla·2018-05-14·CVSS 5.9
CVE-2017-17688 [MEDIUM] CVE-2017-17688 CVE-2017-17689 trojita: various flaws [epel-7]
CVE-2017-17688 CVE-2017-17689 trojita: various flaws [epel-7]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-7.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discussion:
Use the following template to for the 'fedpkg update' reque
Bugzilla
CVE-2017-17688 CVE-2017-17689 evolution-data-server: various flaws [fedora-all]
bugzilla·2018-05-14·CVSS 5.9
CVE-2017-17688 [MEDIUM] CVE-2017-17688 CVE-2017-17689 evolution-data-server: various flaws [fedora-all]
CVE-2017-17688 CVE-2017-17689 evolution-data-server: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versio
Tenable
Advisory: Efail...PGP Has an Email Problem?
blogs_tenable·2018-05-14
Advisory: Efail...PGP Has an Email Problem?
Blog / Research
Subscribe
# Advisory: Efail...PGP Has an Email Problem?
Steve Tilson
May 14, 2018
4 Min Read
Email continues to be one of the most popular ways to communicate in the world today. And given the rapidly evolving threat landscape, email encryption has never been more critical. Pretty Good Privacy (PGP) has long been a trusted platform for encrypted messaging and remains a popular method of sending secure, private email.
On May 14, a research team led by Sebastian Schinzel, researcher and professor of computer security at Münster University of Applied Sciences, disclosed critical vulnerabilities in implementations of several email clients and the OpenPGP and S/MIME standards that could be exploited to disclose sensitive information by exfiltrating plaintext of encrypted m
Tenable
Advisory: Efail...PGP Has an Email Problem?
blogs_tenable·2018-05-14
Advisory: Efail...PGP Has an Email Problem?
## Cloud Exposure
Tenable Cloud Security (CNAPP) Request a demo
Tenable Cloud Vulnerability Management Request a demo
Tenable CIEM Request a demo
Secure your cloud
## Vulnerability Exposure
Tenable Vulnerability Management Try for free
Tenable Security Center Request a demo
Tenable Web App Scanning Try for free
Tenable Patch Management Request a demo
Tenable Enclave Security Request a demo
Tenable Attack Surface Management Request a demo
Tenable Nessus Try for free
## AI Exposure
Tenable AI Exposure Request a demo
## OT/IoT Exposure
Tenable OT Security Request a demo
## Identity Exposure
Tenable Identity Exposure Request a demo
## Business needs
Active Directory
AI Security Posture Management (AI-SPM)
AWS security
Azure security
Cloud Security Posture Man
http://flaked.sockpuppet.org/2018/05/16/a-unified-timeline.htmlhttp://www.securityfocus.com/bid/104162http://www.securitytracker.com/id/1040904https://efail.dehttps://lists.gnupg.org/pipermail/gnupg-users/2018-May/060334.htmlhttps://news.ycombinator.com/item?id=17066419https://protonmail.com/blog/pgp-vulnerability-efailhttps://twitter.com/matthew_d_green/status/995996706457243648https://www.patreon.com/posts/cybersecurity-15-18814817https://www.synology.com/support/security/Synology_SA_18_22http://flaked.sockpuppet.org/2018/05/16/a-unified-timeline.htmlhttp://www.securityfocus.com/bid/104162http://www.securitytracker.com/id/1040904https://efail.dehttps://lists.gnupg.org/pipermail/gnupg-users/2018-May/060334.htmlhttps://news.ycombinator.com/item?id=17066419https://protonmail.com/blog/pgp-vulnerability-efailhttps://twitter.com/matthew_d_green/status/995996706457243648https://www.patreon.com/posts/cybersecurity-15-18814817https://www.synology.com/support/security/Synology_SA_18_22
2018-05-16
Published