CVE-2018-12404
published 2019-05-02CVE-2018-12404: A cached side channel attack during handshakes using RSA encryption could allow for the decryption of encrypted content. This is a variant of the Adaptive…
PriorityP346medium5.9CVSS 3.0
AVNACHPRNUINSUCHINAN
EPSS
44.40%
98.6th percentile
A cached side channel attack during handshakes using RSA encryption could allow for the decryption of encrypted content. This is a variant of the Adaptive Chosen Ciphertext attack (AKA Bleichenbacher attack) and affects all NSS versions prior to NSS 3.41.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | nss | < nss 2:3.41-1 (bookworm) | nss 2:3.41-1 (bookworm) |
| mozilla | network_security_services | < 3.41 | 3.41 |
| mozilla | network_security_services | — | — |
| mozilla | nss | >= 0 < 2:3.41-1 | 2:3.41-1 |
| mozilla | nss | >= 0 < 2:3.41-1 | 2:3.41-1 |
| mozilla | nss | >= 0 < 2:3.41-1 | 2:3.41-1 |
| mozilla | nss | >= 0 < 2:3.41-1 | 2:3.41-1 |
| mozilla | nss | >= 0 < 2:3.28.4-0ubuntu0.14.04.4 | 2:3.28.4-0ubuntu0.14.04.4 |
| mozilla | nss | >= 0 < 2:3.28.4-0ubuntu0.16.04.4 | 2:3.28.4-0ubuntu0.16.04.4 |
| mozilla | nss | >= 0 < 2:3.35-2ubuntu2.1 | 2:3.35-2ubuntu2.1 |
CVSS provenance
nvdv3.05.9MEDIUMCVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
osv5.9MEDIUM
vendor_debian5.9MEDIUM
vendor_redhat5.9MEDIUM
vendor_ubuntu4.7MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-54r4-cg3v-pxw7: A cached side channel attack during handshakes using RSA encryption could allow for the decryption of encrypted content
ghsa_unreviewed·2022-05-24
CVE-2018-12404 [MEDIUM] GHSA-54r4-cg3v-pxw7: A cached side channel attack during handshakes using RSA encryption could allow for the decryption of encrypted content
A cached side channel attack during handshakes using RSA encryption could allow for the decryption of encrypted content. This is a variant of the Adaptive Chosen Ciphertext attack (AKA Bleichenbacher attack) and affects all NSS versions prior to NSS 3.41.
OSV
CVE-2018-12404: A cached side channel attack during handshakes using RSA encryption could allow for the decryption of encrypted content
osv·2019-05-02·CVSS 5.9
CVE-2018-12404 [MEDIUM] CVE-2018-12404: A cached side channel attack during handshakes using RSA encryption could allow for the decryption of encrypted content
A cached side channel attack during handshakes using RSA encryption could allow for the decryption of encrypted content. This is a variant of the Adaptive Chosen Ciphertext attack (AKA Bleichenbacher attack) and affects all NSS versions prior to NSS 3.41.
OSV
nss vulnerabilities
osv·2019-01-09·CVSS 4.7
CVE-2018-0495 [MEDIUM] nss vulnerabilities
nss vulnerabilities
Keegan Ryan discovered that NSS incorrectly handled ECDSA key generation.
A local attacker could possibly use this issue to perform a cache-timing
attack and recover private ECDSA keys. (CVE-2018-0495)
It was discovered that NSS incorrectly handled certain v2-compatible
ClientHello messages. A remote attacker could possibly use this issue to
perform a replay attack. (CVE-2018-12384)
It was discovered that NSS incorrectly handled certain padding oracles. A
remote attacker could possibly use this issue to perform a variant of the
Bleichenbacher attack. (CVE-2018-12404)
CISA ICS
Siemens RUGGEDCOM ROX II
cisa_ics·2021-02-09·CVSS 5.9
[MEDIUM] Siemens RUGGEDCOM ROX II
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Siemens RUGGEDCOM ROX II
Last RevisedFebruary 09, 2021
Alert CodeICSA-21-040-04
## 1. EXECUTIVE SUMMARY
- CVSS v3 9.8
- ATTENTION: Exploitable remotely/low skill level to exploit
- Vendor: Siemens
- Equipment: RUGGEDCOM ROX IIB
- Vulnerabilities: Improper Input Validation, NULL Pointer Dereference, Out-of-Bounds Write, Insufficient Verification of Data Authenticity, Improper Certificate Validation, Out-of-bounds Read
## 2. RISK EVALUATION
Successful exploitation of these vulnerabilities could allow the decryption of encrypted content, possible code execution, or cause a sy
Ubuntu
NSS vulnerabilities
vendor_ubuntu·2019-02-18·CVSS 4.7
CVE-2018-0495 [MEDIUM] NSS vulnerabilities
Title: NSS vulnerabilities
Summary: Several security issues were fixed in NSS.
USN-3850-1 fixed several vulnerabilities in NSS. This update provides
the corresponding update for Ubuntu 12.04 ESM.
Original advisory details:
Keegan Ryan discovered that NSS incorrectly handled ECDSA key generation.
A local attacker could possibly use this issue to perform a cache-timing
attack and recover private ECDSA keys. (CVE-2018-0495)
It was discovered that NSS incorrectly handled certain v2-compatible
ClientHello messages. A remote attacker could possibly use this issue to
perform a replay attack. (CVE-2018-12384)
It was discovered that NSS incorrectly handled certain padding oracles. A
remote attacker could possibly use this issue to perform a variant of the
Bleichenbacher attack. (CVE-2018-1240
Ubuntu
NSS vulnerabilities
vendor_ubuntu·2019-01-09·CVSS 4.7
CVE-2018-0495 [MEDIUM] NSS vulnerabilities
Title: NSS vulnerabilities
Summary: Several security issues were fixed in NSS.
Keegan Ryan discovered that NSS incorrectly handled ECDSA key generation.
A local attacker could possibly use this issue to perform a cache-timing
attack and recover private ECDSA keys. (CVE-2018-0495)
It was discovered that NSS incorrectly handled certain v2-compatible
ClientHello messages. A remote attacker could possibly use this issue to
perform a replay attack. (CVE-2018-12384)
It was discovered that NSS incorrectly handled certain padding oracles. A
remote attacker could possibly use this issue to perform a variant of the
Bleichenbacher attack. (CVE-2018-12404)
Instructions: After a standard system update you need to restart any applications that
use NSS, such as Evolution, to make all the necessary c
Red Hat
nss: Cache side-channel variant of the Bleichenbacher attack
vendor_redhat·2018-11-30·CVSS 5.9
CVE-2018-12404 [MEDIUM] CWE-200 nss: Cache side-channel variant of the Bleichenbacher attack
nss: Cache side-channel variant of the Bleichenbacher attack
A cached side channel attack during handshakes using RSA encryption could allow for the decryption of encrypted content. This is a variant of the Adaptive Chosen Ciphertext attack (AKA Bleichenbacher attack) and affects all NSS versions prior to NSS 3.41.
Package: nss (Red Hat Enterprise Linux 5) - Will not fix
Package: nss (Red Hat Enterprise Linux 6) - Will not fix
Package: mingw-nss (Red Hat Enterprise Linux 8) - Will not fix
Package: nss (Red Hat Enterprise Linux 8) - Not affected
Package: nss (Red Hat OpenShift Enterprise 3) - Not affected
Package: redhat-virtualization-host (Red Hat Virtualization 4) - Will not fix
Package: rhvm-appliance (Red Hat Virtualization 4) - Will not fix
Debian
CVE-2018-12404: nss - A cached side channel attack during handshakes using RSA encryption could allow ...
vendor_debian·2018·CVSS 5.9
CVE-2018-12404 [MEDIUM] CVE-2018-12404: nss - A cached side channel attack during handshakes using RSA encryption could allow ...
A cached side channel attack during handshakes using RSA encryption could allow for the decryption of encrypted content. This is a variant of the Adaptive Chosen Ciphertext attack (AKA Bleichenbacher attack) and affects all NSS versions prior to NSS 3.41.
Scope: local
bookworm: resolved (fixed in 2:3.41-1)
bullseye: resolved (fixed in 2:3.41-1)
forky: resolved (fixed in 2:3.41-1)
sid: resolved (fixed in 2:3.41-1)
trixie: resolved (fixed in 2:3.41-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-12404 nss: Cache side-channel variant of the Bleichenbacher attack [fedora-all]
bugzilla·2019-01-09·CVSS 5.9
CVE-2018-12404 [MEDIUM] CVE-2018-12404 nss: Cache side-channel variant of the Bleichenbacher attack [fedora-all]
CVE-2018-12404 nss: Cache side-channel variant of the Bleichenbacher attack [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple support
Bugzilla
CVE-2018-12404 nss: Cache side-channel variant of the Bleichenbacher attack
bugzilla·2018-12-10·CVSS 5.9
CVE-2018-12404 [MEDIUM] CVE-2018-12404 nss: Cache side-channel variant of the Bleichenbacher attack
CVE-2018-12404 nss: Cache side-channel variant of the Bleichenbacher attack
An issue was found in nss before version 3.36.6. The TLS implementation exposes padding oracle in each of the three stages of handling PKCS #1 v1.5 padding
References:
https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.36.6_release_notes
http://cat.eyalro.net/
Discussion:
This issue was also resolved via nss-3.40 as per:
https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.40.1_release_notes
---
Created nss tracking bugs for this issue:
Affects: fedora-all [bug 1664539]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2019:2237 https://access.redhat.com/errata/RHSA-2019:2237
---
This bug is now closed. Further updates for
Bugzilla
Vulnerability disclosure Bleichenbacher attack
bugzilla·2018-08-24
[MEDIUM] Vulnerability disclosure Bleichenbacher attack
Vulnerability disclosure Bleichenbacher attack
***** IMPORTANT: This information is under 120 days embargo (exact time will be coordinated). This MUST NOT be talked about before that time, except on a need-to-know basis.
Dear NSS team,
Thanks for your quick response.
The vulnerability that we found is to a cache side channel based variant of the Bleichenbacher attack.
We are currently in the process of writing the paper and implementing PoCs for some of the vulnerable TLS implementations.
We decided to rush the disclosure process because this type of attack is now getting a lot of attention due to the recent “Pseudo Constant Time Implementations of TLS Are Only Pseudo Secure” paper by Ronen et al. that was just published (https://eprint.iacr.org/2018/747). We though it will be prudent
arXiv
Cream Skimming the Underground: Identifying Relevant Information Points from Online Forums
arxiv_fulltext·2023-08-03
Cream Skimming the Underground: Identifying Relevant Information Points from Online Forums
Cream Skimming the Underground: Identifying Relevant Information Points from Online Forums
Felipe Moreno-Vera, Mateus Nogueira, Daniel S. Menasché, Miguel Bicudo, Ashton Woiwood, Enrico Lovat, Anton Kocheturov, and Leandro Pfleger de Aguiar
[1]
Felipe Moreno-Vera1, Mateus Nogueira1, Cainã Figueiredo1, Daniel S. Menasché1, Miguel Bicudo1,
Ashton Woiwood2, Enrico Lovat3, Anton Kocheturov3, and Leandro Pfleger de Aguiar4
1Federal University of Rio de Janeiro (UFRJ),
3Siemens Corporation, 2ESO,
4Amazon.com
[1]
(#1)
footnote-1
plain
plain
## Abstract
This paper proposes a machine learning-based approach for detecting the exploitation of vulnerabilities in the wild by monitoring underground hacking forums. The increasing volume of posts discussing exploitation in the wild calls for an
arXiv
Well Begun is Half Done: An Empirical Study of Exploitability & Impact of Base-Image Vulnerabilities
arxiv_fulltext·2021-12-21
Well Begun is Half Done: An Empirical Study of Exploitability & Impact of Base-Image Vulnerabilities
Well Begun is Half Done: An Empirical Study of Exploitability & Impact of Base-Image Vulnerabilities
Mubin Ul Haque2 and
M. Ali Babar 3
Centre for Research on Engineering Software Technologies (CREST)
School of Computer Science, and Engineering, The University of Adelaide, Adelaide, Australia
Cyber Security Cooperative Research Centre, Australia
[email protected], [email protected]
plain
plain
## Abstract
Container technology, (e.g., Docker) is being widely adopted for deploying software infrastructures or applications in the form of container images.
Security vulnerabilities in the container images are a primary concern for developing containerized software.
Exploitation of the vulnerabilities could result in disastrous impact, such as loss of confidentiality, in
http://lists.opensuse.org/opensuse-security-announce/2019-07/msg00021.htmlhttp://www.securityfocus.com/bid/107260https://access.redhat.com/errata/RHSA-2019:2237https://bugzilla.mozilla.org/show_bug.cgi?id=CVE-2018-12404https://cert-portal.siemens.com/productcert/pdf/ssa-379803.pdfhttps://lists.debian.org/debian-lts-announce/2020/09/msg00029.htmlhttps://us-cert.cisa.gov/ics/advisories/icsa-21-040-04https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-07/msg00021.htmlhttp://www.securityfocus.com/bid/107260https://access.redhat.com/errata/RHSA-2019:2237https://bugzilla.mozilla.org/show_bug.cgi?id=CVE-2018-12404https://cert-portal.siemens.com/productcert/pdf/ssa-379803.pdfhttps://lists.debian.org/debian-lts-announce/2020/09/msg00029.htmlhttps://us-cert.cisa.gov/ics/advisories/icsa-21-040-04https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html
2019-05-02
Published