CVE-2018-16868
published 2018-12-03CVE-2018-16868: A Bleichenbacher type side-channel based padding oracle attack was found in the way gnutls handles verification of RSA decrypted PKCS#1 v1.5 data. An attacker…
PriorityP425medium5.6CVSS 3.1
AVPACHPRLUINSCCHILAN
EPSS
0.57%
43.5th percentile
A Bleichenbacher type side-channel based padding oracle attack was found in the way gnutls handles verification of RSA decrypted PKCS#1 v1.5 data. An attacker who is able to run process on the same physical core as the victim process, could use this to extract plaintext or in some cases downgrade any TLS connections to a vulnerable server.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | gnutls28 | < gnutls28 3.6.5-2 (bookworm) | gnutls28 3.6.5-2 (bookworm) |
| gnu | gnutls | <= 3.6.4 | — |
CVSS provenance
nvdv3.15.6MEDIUMCVSS:3.1/AV:P/AC:H/PR:L/UI:N/S:C/C:H/I:L/A:N
nvdv3.04.7MEDIUMCVSS:3.0/AV:P/AC:H/PR:H/UI:N/S:C/C:H/I:N/A:N
nvdv2.03.3LOWAV:L/AC:M/Au:N/C:P/I:P/A:N
osv5.6MEDIUM
vendor_debian5.6MEDIUM
vendor_redhat5.6MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification
vendor_redhat·2018-11-30·CVSS 5.6
CVE-2018-16868 [MEDIUM] CWE-203 gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification
gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification
A Bleichenbacher type side-channel based padding oracle attack was found in the way gnutls handles verification of RSA decrypted PKCS#1 v1.5 data. An attacker who is able to run process on the same physical core as the victim process, could use this to extract plaintext or in some cases downgrade any TLS connections to a vulnerable server.
A Bleichenbacher type side-channel based padding oracle attack was found in the way gnutls handles verification of RSA decrypted PKCS#1 v1.5 data. An attacker who is able to run a process on the same physical core as the victim process could use this to extract plain text or, in some cases, downgrade any TLS connections to a vulnerable server.
Debian
CVE-2018-16868: gnutls28 - A Bleichenbacher type side-channel based padding oracle attack was found in the ...
vendor_debian·2018·CVSS 5.6
CVE-2018-16868 [MEDIUM] CVE-2018-16868: gnutls28 - A Bleichenbacher type side-channel based padding oracle attack was found in the ...
A Bleichenbacher type side-channel based padding oracle attack was found in the way gnutls handles verification of RSA decrypted PKCS#1 v1.5 data. An attacker who is able to run process on the same physical core as the victim process, could use this to extract plaintext or in some cases downgrade any TLS connections to a vulnerable server.
Scope: local
bookworm: resolved (fixed in 3.6.5-2)
bullseye: resolved (fixed in 3.6.5-2)
forky: resolved (fixed in 3.6.5-2)
sid: resolved (fixed in 3.6.5-2)
trixie: resolved (fixed in 3.6.5-2)
GHSA
GHSA-qjx3-4wr5-3c93: A Bleichenbacher type side-channel based padding oracle attack was found in the way gnutls handles verification of RSA decrypted PKCS#1 v1
ghsa_unreviewed·2022-05-13
CVE-2018-16868 [MEDIUM] CWE-203 GHSA-qjx3-4wr5-3c93: A Bleichenbacher type side-channel based padding oracle attack was found in the way gnutls handles verification of RSA decrypted PKCS#1 v1
A Bleichenbacher type side-channel based padding oracle attack was found in the way gnutls handles verification of RSA decrypted PKCS#1 v1.5 data. An attacker who is able to run process on the same physical core as the victim process, could use this to extract plaintext or in some cases downgrade any TLS connections to a vulnerable server.
OSV
CVE-2018-16868: A Bleichenbacher type side-channel based padding oracle attack was found in the way gnutls handles verification of RSA decrypted PKCS#1 v1
osv·2018-12-03·CVSS 5.6
CVE-2018-16868 [MEDIUM] CVE-2018-16868: A Bleichenbacher type side-channel based padding oracle attack was found in the way gnutls handles verification of RSA decrypted PKCS#1 v1
A Bleichenbacher type side-channel based padding oracle attack was found in the way gnutls handles verification of RSA decrypted PKCS#1 v1.5 data. An attacker who is able to run process on the same physical core as the victim process, could use this to extract plaintext or in some cases downgrade any TLS connections to a vulnerable server.
No detection rules found.
No public exploits indexed.
arXiv
You Really Shouldn't Roll Your Own Crypto: An Empirical Study of Vulnerabilities in Cryptographic Libraries
arxiv_fulltext·2021-07-11
You Really Shouldn't Roll Your Own Crypto: An Empirical Study of Vulnerabilities in Cryptographic Libraries
You Really Shouldn't Roll Your Own Crypto:
An Empirical Study of Vulnerabilities in Cryptographic Libraries
Anonymous
Jenny Blessing
MIT
Michael A. Specter
MIT
Daniel J. Weitzner
MIT
## Abstract
The security of the Internet rests on a small number of open-source cryptographic libraries: a vulnerability in any one of them threatens to compromise a significant percentage of web traffic. Despite this potential for security impact, the characteristics and causes of vulnerabilities in cryptographic software are not well understood. In this work, we conduct the first comprehensive analysis of cryptographic libraries and the vulnerabilities affecting them. We collect data from the National Vulnerability Database, individual project repositories and mailing lists, and other relevant sourc
arXiv
Revisiting and Evaluating Software Side-channel Vulnerabilities and Countermeasures in Cryptographic Applications
arxiv_fulltext·2019-12-12
Revisiting and Evaluating Software Side-channel Vulnerabilities and Countermeasures in Cryptographic Applications
Revisiting and Evaluating Software Side-channel Vulnerabilities and Countermeasures in Cryptographic Applications
Tianwei Zhang
Nanyang Technological University
[email protected]
Jun Jiang
Two Sigma Investments, LP
[email protected]
Yinqian Zhang
The Ohio State University
[email protected]
dkgreenrgb0,0.6,0
grayrgb0.5,0.5,0.5
mauvergb0.58,0,0.82
frame=tb,
language=C,
aboveskip=3mm,
belowskip=3mm,
showstringspaces=false,
columns=flexible,
basicstyle= ,
numbers=left,
numbersep=-2pt,
numberstyle= ,
keywordstyle=blue,
commentstyle=dkgreen,
stringstyle=mauve,
breaklines=true,
breakatwhitespace=true,
tabsize=3
## Abstract
We systematize software side-channel attacks with a focus on vulnerabilities
and countermeasures in the cryptographic implementations. Particularly,
Bugzilla
CVE-2018-16868 gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification [fedora-all]
bugzilla·2018-12-13·CVSS 5.6
CVE-2018-16868 [MEDIUM] CVE-2018-16868 gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification [fedora-all]
CVE-2018-16868 gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification [fedora-all]
+++ This bug was initially created as a clone of Bug #1655389 +++
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention th
Bugzilla
CVE-2018-16868 gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification [fedora-all]
bugzilla·2018-12-03·CVSS 5.6
CVE-2018-16868 [MEDIUM] CVE-2018-16868 gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification [fedora-all]
CVE-2018-16868 gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit mes
Bugzilla
CVE-2018-16868 mingw-gnutls: gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification [epel-7]
bugzilla·2018-12-03·CVSS 5.6
CVE-2018-16868 [MEDIUM] CVE-2018-16868 mingw-gnutls: gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification [epel-7]
CVE-2018-16868 mingw-gnutls: gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification [epel-7]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-7.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg comm
Bugzilla
CVE-2018-16868 gnutls30: gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification [epel-6]
bugzilla·2018-12-03·CVSS 5.6
CVE-2018-16868 [MEDIUM] CVE-2018-16868 gnutls30: gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification [epel-6]
CVE-2018-16868 gnutls30: gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification [epel-6]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-6.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit m
Bugzilla
CVE-2018-16868 mingw-gnutls: gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification [fedora-all]
bugzilla·2018-12-03·CVSS 5.6
CVE-2018-16868 [MEDIUM] CVE-2018-16868 mingw-gnutls: gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification [fedora-all]
CVE-2018-16868 mingw-gnutls: gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fed
Bugzilla
CVE-2018-16868 gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification
bugzilla·2018-11-30·CVSS 5.6
CVE-2018-16868 [MEDIUM] CVE-2018-16868 gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification
CVE-2018-16868 gnutls: Bleichenbacher-like side channel leakage in PKCS#1 v1.5 verification and padding oracle verification
GnuTLS is vulnerable to Bleichenbacher-like side channel leakage in PKCS#1 1.5 verificati on and padding oracle verification.
Discussion:
External References:
http://cat.eyalro.net/
---
Created gnutls tracking bugs for this issue:
Affects: fedora-all [bug 1655389]
Created gnutls30 tracking bugs for this issue:
Affects: epel-6 [bug 1655391]
Created mingw-gnutls tracking bugs for this issue:
Affects: epel-7 [bug 1655392]
Affects: fedora-all [bug 1655390]
http://cat.eyalro.net/http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00017.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-05/msg00068.htmlhttp://www.securityfocus.com/bid/106080https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-16868http://cat.eyalro.net/http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00017.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-05/msg00068.htmlhttp://www.securityfocus.com/bid/106080https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-16868
2018-12-03
Published