CVE-2017-2801
published 2017-05-24CVE-2017-2801: A programming error exists in a way Randombit Botan cryptographic library version 2.0.1 implements x500 string comparisons which could lead to certificate…
PriorityP342critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
1.32%
67.9th percentile
A programming error exists in a way Randombit Botan cryptographic library version 2.0.1 implements x500 string comparisons which could lead to certificate verification issues and abuse. A specially crafted X509 certificate would need to be delivered to the client or server application in order to trigger this vulnerability.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| botan_project | botan | — | — |
| randombit | botan | — | — |
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-x8qg-whhh-m3ph: A programming error exists in a way Randombit Botan cryptographic library version 2
ghsa_unreviewed·2022-05-13
CVE-2017-2801 [CRITICAL] CWE-125 GHSA-x8qg-whhh-m3ph: A programming error exists in a way Randombit Botan cryptographic library version 2
A programming error exists in a way Randombit Botan cryptographic library version 2.0.1 implements x500 string comparisons which could lead to certificate verification issues and abuse. A specially crafted X509 certificate would need to be delivered to the client or server application in order to trigger this vulnerability.
OSV
CVE-2017-2801: A programming error exists in a way Randombit Botan cryptographic library version 2
osv·2017-05-24·CVSS 9.8
CVE-2017-2801 [CRITICAL] CVE-2017-2801: A programming error exists in a way Randombit Botan cryptographic library version 2
A programming error exists in a way Randombit Botan cryptographic library version 2.0.1 implements x500 string comparisons which could lead to certificate verification issues and abuse. A specially crafted X509 certificate would need to be delivered to the client or server application in order to trigger this vulnerability.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2017-2801 botan: Incorrect comparison in X.509 DN strings [fedora-all]
bugzilla·2017-04-11·CVSS 6.5
CVE-2017-2801 [MEDIUM] CVE-2017-2801 botan: Incorrect comparison in X.509 DN strings [fedora-all]
CVE-2017-2801 botan: Incorrect comparison in X.509 DN strings [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions of
Bugzilla
CVE-2017-2801 botan: Incorrect comparison in X.509 DN strings [epel-7]
bugzilla·2017-04-11·CVSS 6.5
CVE-2017-2801 [MEDIUM] CVE-2017-2801 botan: Incorrect comparison in X.509 DN strings [epel-7]
CVE-2017-2801 botan: Incorrect comparison in X.509 DN strings [epel-7]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-7.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discussion:
Use the following template to for the 'fedpkg upda
Bugzilla
CVE-2017-2801 botan: Incorrect comparison in X.509 DN strings
bugzilla·2017-04-11·CVSS 6.5
CVE-2017-2801 [MEDIUM] CVE-2017-2801 botan: Incorrect comparison in X.509 DN strings
CVE-2017-2801 botan: Incorrect comparison in X.509 DN strings
Botan’s implementation of X.509 name comparisons had a flaw which could result in an out of bound memory read while processing a specially formed DN. This could potentially be exploited for information disclosure or denial of service, or result in incorrect validation results.
References:
https://botan.randombit.net/security.html
https://botan.randombit.net/news.html#version-1-10-16-2017-04-04
Discussion:
Created botan tracking bugs for this issue:
Affects: epel-6 [bug 1441130]
Affects: epel-7 [bug 1441128]
Affects: fedora-all [bug 1441129]
---
all versions updated and pushed. closing this here.
Bugzilla
CVE-2017-2801 botan: Incorrect comparison in X.509 DN strings [epel-6]
bugzilla·2017-04-11·CVSS 6.5
CVE-2017-2801 [MEDIUM] CVE-2017-2801 botan: Incorrect comparison in X.509 DN strings [epel-6]
CVE-2017-2801 botan: Incorrect comparison in X.509 DN strings [epel-6]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-6.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discussion:
Use the following template to for the 'fedpkg upda
Talos
Vulnerability Spotlight: Randombit Botan Library X509 Certificate Validation Bypass Vulnerability
blogs_talos·2017-04-28·CVSS 6.5
[MEDIUM] Vulnerability Spotlight: Randombit Botan Library X509 Certificate Validation Bypass Vulnerability
This vulnerability was discovered by Aleksandar Nikolic of Cisco Talos.
### OverviewTalos has discovered a vulnerability in the Randombit Botan library. A programming error exists in a way Botan library implements x500 string comparisons which could lead to certificate verification issues and abuse. A specially crafted X509 certificate would need to be delivered to the client or server application in order to trigger this vulnerability. A security advisory was published on theRandombit websiteto inform users the vulnerability is now fixed in versions 2.1.0 and 1.10.16.
TALOS-2017-0294 (CVE-2017-2801) Randombit Botan Library X509 Certificate Validation Bypass Vulnerability
## Details
### X509 Certificate Validation Bypass VulnerabilityThe vulnerability is located in the function that Bo
2017-05-24
Published