CVE-2018-1000808
published 2018-10-08CVE-2018-1000808: Python Cryptographic Authority pyopenssl version Before 17.5.0 contains a CWE - 401 : Failure to Release Memory Before Removing Last Reference vulnerability in…
PriorityP427medium5.9CVSS 3.0
AVNACHPRNUINSUCNINAH
EPSS
1.90%
77.5th percentile
Python Cryptographic Authority pyopenssl version Before 17.5.0 contains a CWE - 401 : Failure to Release Memory Before Removing Last Reference vulnerability in PKCS #12 Store that can result in Denial of service if memory runs low or is exhausted. This attack appear to be exploitable via Depends upon calling application, however it could be as simple as initiating a TLS connection. Anything that would cause the calling application to reload certificates from a PKCS #12 store.. This vulnerability appears to have been fixed in 17.5.0.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| debian | pyopenssl | < pyopenssl 17.5.0-1 (bookworm) | pyopenssl 17.5.0-1 (bookworm) |
| pyopenssl | pyopenssl | >= 0 < 17.5.0-1 | 17.5.0-1 |
| pyopenssl | pyopenssl | >= 0 < 17.5.0-1 | 17.5.0-1 |
| pyopenssl | pyopenssl | >= 0 < 17.5.0-1 | 17.5.0-1 |
| pyopenssl | pyopenssl | >= 0 < 17.5.0-1 | 17.5.0-1 |
| pyopenssl | pyopenssl | >= 0 < 17.5.0 | 17.5.0 |
| pyopenssl | pyopenssl | >= 0 < 0.15.1-2ubuntu0.2 | 0.15.1-2ubuntu0.2 |
| pyopenssl_project | pyopenssl | < 17.5.0 | 17.5.0 |
| redhat | enterprise_linux_desktop | — | — |
| redhat | enterprise_linux_server | — | — |
| redhat | enterprise_linux_workstation | — | — |
| redhat | gluster_storage | — | — |
| redhat | openstack | — | — |
CVSS provenance
nvdv3.05.9MEDIUMCVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv8.1HIGH
vendor_ubuntu8.1HIGH
vendor_debian5.9LOW
vendor_redhat5.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
pyOpenSSL vulnerabilities
vendor_ubuntu·2018-11-08·CVSS 8.1
CVE-2018-1000807 [HIGH] pyOpenSSL vulnerabilities
Title: pyOpenSSL vulnerabilities
Summary: Several security issues were fixed in pyOpenSSL.
It was discovered that pyOpenSSL incorrectly handled memory when handling
X509 objects. A remote attacker could use this issue to cause pyOpenSSL to
crash, resulting in a denial of service, or possibly execute arbitrary
code. (CVE-2018-1000807)
It was discovered that pyOpenSSL incorrectly handled memory when performing
operations on a PKCS #12 store. A remote attacker could possibly use this
issue to cause pyOpenSSL to consume resources, resulting in a denial of
service. (CVE-2018-1000808)
Instructions: In general, a standard system update will make all the necessary changes.
Debian
CVE-2018-1000808: pyopenssl - Python Cryptographic Authority pyopenssl version Before 17.5.0 contains a CWE - ...
vendor_debian·2018·CVSS 5.9
CVE-2018-1000808 [MEDIUM] CVE-2018-1000808: pyopenssl - Python Cryptographic Authority pyopenssl version Before 17.5.0 contains a CWE - ...
Python Cryptographic Authority pyopenssl version Before 17.5.0 contains a CWE - 401 : Failure to Release Memory Before Removing Last Reference vulnerability in PKCS #12 Store that can result in Denial of service if memory runs low or is exhausted. This attack appear to be exploitable via Depends upon calling application, however it could be as simple as initiating a TLS connection. Anything that would cause the calling application to reload certificates from a PKCS #12 store.. This vulnerability appears to have been fixed in 17.5.0.
Scope: local
bookworm: resolved (fixed in 17.5.0-1)
bullseye: resolved (fixed in 17.5.0-1)
forky: resolved (fixed in 17.5.0-1)
sid: resolved (fixed in 17.5.0-1)
trixie: resolved (fixed in 17.5.0-1)
Red Hat
pyOpenSSL: Failure to release memory before removing last reference in PKCS #12 Store
vendor_redhat·2017-11-29·CVSS 5.9
CVE-2018-1000808 [MEDIUM] CWE-400 pyOpenSSL: Failure to release memory before removing last reference in PKCS #12 Store
pyOpenSSL: Failure to release memory before removing last reference in PKCS #12 Store
Python Cryptographic Authority pyopenssl version Before 17.5.0 contains a CWE - 401 : Failure to Release Memory Before Removing Last Reference vulnerability in PKCS #12 Store that can result in Denial of service if memory runs low or is exhausted. This attack appear to be exploitable via Depends upon calling application, however it could be as simple as initiating a TLS connection. Anything that would cause the calling application to reload certificates from a PKCS #12 store.. This vulnerability appears to have been fixed in 17.5.0.
Package: pyOpenSSL (Red Hat Enterprise Linux 5) - Will not fix
Package: pyOpenSSL (Red Hat Enterprise Linux 6) - Will not fix
Package: pyOpenSSL (Red Hat Enterprise Linux
OSV
pyopenssl vulnerabilities
osv·2018-11-08·CVSS 8.1
CVE-2018-1000807 [HIGH] pyopenssl vulnerabilities
pyopenssl vulnerabilities
It was discovered that pyOpenSSL incorrectly handled memory when handling
X509 objects. A remote attacker could use this issue to cause pyOpenSSL to
crash, resulting in a denial of service, or possibly execute arbitrary
code. (CVE-2018-1000807)
It was discovered that pyOpenSSL incorrectly handled memory when performing
operations on a PKCS #12 store. A remote attacker could possibly use this
issue to cause pyOpenSSL to consume resources, resulting in a denial of
service. (CVE-2018-1000808)
OSV
Pyopenssl Incorrect Memory Management
osv·2018-10-10
CVE-2018-1000808 [HIGH] Pyopenssl Incorrect Memory Management
Pyopenssl Incorrect Memory Management
It was discovered that pyOpenSSL incorrectly handled memory when performing operations on a PKCS #12 store. A remote attacker could possibly use this issue to cause pyOpenSSL to consume resources, resulting in a denial of service.
This attack appear to be exploitable via Depends upon calling application, however it could be as simple as initiating a TLS connection that would cause the calling application to reload certificates from a PKCS #12 store. This vulnerability appears to have been fixed in 17.5.0.
GHSA
Pyopenssl Incorrect Memory Management
ghsa·2018-10-10
CVE-2018-1000808 [HIGH] CWE-401 Pyopenssl Incorrect Memory Management
Pyopenssl Incorrect Memory Management
It was discovered that pyOpenSSL incorrectly handled memory when performing operations on a PKCS #12 store. A remote attacker could possibly use this issue to cause pyOpenSSL to consume resources, resulting in a denial of service.
This attack appear to be exploitable via Depends upon calling application, however it could be as simple as initiating a TLS connection that would cause the calling application to reload certificates from a PKCS #12 store. This vulnerability appears to have been fixed in 17.5.0.
OSV
CVE-2018-1000808: Python Cryptographic Authority pyopenssl version Before 17
osv·2018-10-08·CVSS 5.9
CVE-2018-1000808 [MEDIUM] CVE-2018-1000808: Python Cryptographic Authority pyopenssl version Before 17
Python Cryptographic Authority pyopenssl version Before 17.5.0 contains a CWE - 401 : Failure to Release Memory Before Removing Last Reference vulnerability in PKCS #12 Store that can result in Denial of service if memory runs low or is exhausted. This attack appear to be exploitable via Depends upon calling application, however it could be as simple as initiating a TLS connection. Anything that would cause the calling application to reload certificates from a PKCS #12 store.. This vulnerability appears to have been fixed in 17.5.0.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-1000807 CVE-2018-1000808 pyOpenSSL: various flaws [fedora-28]
bugzilla·2018-10-17·CVSS 8.1
CVE-2018-1000807 [HIGH] CVE-2018-1000807 CVE-2018-1000808 pyOpenSSL: various flaws [fedora-28]
CVE-2018-1000807 CVE-2018-1000808 pyOpenSSL: various flaws [fedora-28]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-28.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discussion:
Use the following template to for the 'fedpkg u
Bugzilla
CVE-2018-1000808 pyOpenSSL: Failure to release memory before removing last reference in PKCS #12 Store
bugzilla·2018-10-17·CVSS 5.9
CVE-2018-1000808 [MEDIUM] CVE-2018-1000808 pyOpenSSL: Failure to release memory before removing last reference in PKCS #12 Store
CVE-2018-1000808 pyOpenSSL: Failure to release memory before removing last reference in PKCS #12 Store
Python Cryptographic Authority pyopenssl version before 17.5.0 fails to release memory before removing last reference in PKCS #12 Store. This can result in a Denial of service if memory runs low or is exhausted.
Upstream issue:
https://github.com/pyca/pyopenssl/pull/723
Discussion:
Created pyOpenSSL tracking bugs for this issue:
Affects: fedora-28 [bug 1640218]
Affects: openstack-rdo [bug 1640219]
---
This issue has been addressed in the following products:
Red Hat OpenStack Platform 13.0 (Queens)
Via RHSA-2019:0085 https://access.redhat.com/errata/RHSA-2019:0085
Bugzilla
CVE-2018-1000807 CVE-2018-1000808 pyOpenSSL: various flaws [openstack-rdo]
bugzilla·2018-10-17·CVSS 8.1
CVE-2018-1000807 [HIGH] CVE-2018-1000807 CVE-2018-1000808 pyOpenSSL: various flaws [openstack-rdo]
CVE-2018-1000807 CVE-2018-1000808 pyOpenSSL: various flaws [openstack-rdo]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of openstack-rdo.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discussion:
This CVE was fixed in pyOpenSSL-17.5.0.
http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00014.htmlhttps://access.redhat.com/errata/RHSA-2019:0085https://github.com/pyca/pyopenssl/pull/723https://usn.ubuntu.com/3813-1/http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00014.htmlhttps://access.redhat.com/errata/RHSA-2019:0085https://github.com/pyca/pyopenssl/pull/723https://usn.ubuntu.com/3813-1/
2018-10-08
Published