CVE-2020-12403
published 2021-05-27CVE-2020-12403: A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20, it could cause out-of-bounds…
PriorityP347critical9.1CVSS 3.1
AVNACLPRNUINSUCHINAH
EPSS
1.54%
72.1th percentile
A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20, it could cause out-of-bounds reads. This issue was fixed by explicitly disabling multi-part ChaCha20 (which was not functioning correctly) and strictly enforcing tag length. The highest threat from this vulnerability is to confidentiality and system availability.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | nss | < nss 2:3.55-1 (bookworm) | nss 2:3.55-1 (bookworm) |
| mozilla | nss | < 3.55 | 3.55 |
| mozilla | nss | — | — |
| mozilla | nss | >= 0 < 2:3.55-1 | 2:3.55-1 |
| mozilla | nss | >= 0 < 2:3.55-1 | 2:3.55-1 |
| mozilla | nss | >= 0 < 2:3.55-1 | 2:3.55-1 |
| mozilla | nss | >= 0 < 2:3.55-1 | 2:3.55-1 |
| msrc | cbl2_nss_3.44-10_on_cbl_mariner_2.0 | — | — |
| msrc | cm1_nss_3.44-6_on_cbl_mariner_1.0 | — | — |
| paloalto | pan-os | — | — |
CVSS provenance
nvdv3.19.1CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
nvdv2.06.4MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:P
osv9.1CRITICAL
vendor_debian9.1CRITICAL
vendor_msrc9.1CRITICAL
vendor_redhat9.1CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Palo Alto
PAN-SA-2024-0004 Informational Bulletin: OSS CVEs fixed in PAN-OS
vendor_paloalto·2024-04-10·CVSS 9.8
CVE-2015-5739 [CRITICAL] PAN-SA-2024-0004 Informational Bulletin: OSS CVEs fixed in PAN-OS
PAN-SA-2024-0004 Informational Bulletin: OSS CVEs fixed in PAN-OS
The Palo Alto Networks Product Security Assurance team has evaluated the following open source software (OSS) CVEs as they relate to PAN-OS. While it was not determined that these CVEs have any significant impact on PAN-OS, they have been fixed out of an abundance of caution. CVE Summary CVE-2015-5739 This CVE is fixed in PAN-OS 11.0.4, and all later PAN-OS versions. CVE-2016-10228 This CVE is fixed in PAN-OS 11.1.3, and all later PAN-OS versions. CVE-2017-8923 This CVE is fixed in PAN-OS 10.2.8, 11.0.3, and all later PAN-OS versions. CVE-2017-9120 This CVE is fixed in PAN-OS 10.2.8, 11.0.3, and all later PAN-OS versions. CVE-2018-25009 This CVE is fixed in PAN-OS 10.2.8, 11.0.4, 11.1.3, and all later PAN-OS versions. CVE-2
Microsoft
A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20 it could cause out-of-bounds reads. This issue was fixed by explicitly disa
vendor_msrc·2021-05-11·CVSS 9.1
CVE-2020-12403 [CRITICAL] CWE-125 A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20 it could cause out-of-bounds reads. This issue was fixed by explicitly disa
A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20 it could cause out-of-bounds reads. This issue was fixed by explicitly disabling multi-part ChaCha20 (which was not functioning correctly) and strictly enforcing tag length. The highest threat from this vulnerability is to confidentiality and system availability.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to tran
Ubuntu
NSS vulnerability
vendor_ubuntu·2020-08-27
CVE-2020-12403 NSS vulnerability
Title: NSS vulnerability
Summary: NSS could be made to expose sensitive information if it received a specially crafted
input.
It was discovered that NSS incorrectly handled some inputs.
An attacker could possibly use this issue to expose sensitive information.
Instructions: After a standard system update you need to reboot your computer to make
all the necessary changes.
Red Hat
nss: CHACHA20-POLY1305 decryption with undersized tag leads to out-of-bounds read
vendor_redhat·2020-07-27·CVSS 9.1
CVE-2020-12403 [CRITICAL] CWE-125 nss: CHACHA20-POLY1305 decryption with undersized tag leads to out-of-bounds read
nss: CHACHA20-POLY1305 decryption with undersized tag leads to out-of-bounds read
A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20, it could cause out-of-bounds reads. This issue was fixed by explicitly disabling multi-part ChaCha20 (which was not functioning correctly) and strictly enforcing tag length. The highest threat from this vulnerability is to confidentiality and system availability.
A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS. When using multi-part Chacha20, it could cause out-of-bounds reads. This issue was fixed by explicitly disabling multi-part ChaCha20 (which was not functioning correctly) and strictly enforcing tag length. The highest threat from this vulnerability is to c
Debian
CVE-2020-12403: nss - A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions...
vendor_debian·2020·CVSS 9.1
CVE-2020-12403 [CRITICAL] CVE-2020-12403: nss - A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions...
A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20, it could cause out-of-bounds reads. This issue was fixed by explicitly disabling multi-part ChaCha20 (which was not functioning correctly) and strictly enforcing tag length. The highest threat from this vulnerability is to confidentiality and system availability.
Scope: local
bookworm: resolved (fixed in 2:3.55-1)
bullseye: resolved (fixed in 2:3.55-1)
forky: resolved (fixed in 2:3.55-1)
sid: resolved (fixed in 2:3.55-1)
trixie: resolved (fixed in 2:3.55-1)
GHSA
GHSA-9h25-47mw-52hh: A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3
ghsa_unreviewed·2022-05-24
CVE-2020-12403 [CRITICAL] CWE-125 GHSA-9h25-47mw-52hh: A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3
A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20, it could cause out-of-bounds reads. This issue was fixed by explicitly disabling multi-part ChaCha20 (which was not functioning correctly) and strictly enforcing tag length. The highest threat from this vulnerability is to confidentiality and system availability.
OSV
CVE-2020-12403: A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3
osv·2021-05-27·CVSS 9.1
CVE-2020-12403 [CRITICAL] CVE-2020-12403: A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3
A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20, it could cause out-of-bounds reads. This issue was fixed by explicitly disabling multi-part ChaCha20 (which was not functioning correctly) and strictly enforcing tag length. The highest threat from this vulnerability is to confidentiality and system availability.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2020-12403 nss: CHACHA20-POLY1305 decryption with undersized tag leads to out-of-bounds read [fedora-all]
bugzilla·2020-08-14·CVSS 9.1
CVE-2020-12403 [CRITICAL] CVE-2020-12403 nss: CHACHA20-POLY1305 decryption with undersized tag leads to out-of-bounds read [fedora-all]
CVE-2020-12403 nss: CHACHA20-POLY1305 decryption with undersized tag leads to out-of-bounds read [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue aff
Bugzilla
CVE-2020-12403 nss: CHACHA20-POLY1305 decryption with undersized tag leads to out-of-bounds read
bugzilla·2020-08-14·CVSS 9.1
CVE-2020-12403 [CRITICAL] CVE-2020-12403 nss: CHACHA20-POLY1305 decryption with undersized tag leads to out-of-bounds read
CVE-2020-12403 nss: CHACHA20-POLY1305 decryption with undersized tag leads to out-of-bounds read
As per upstream:
Bug 1636771 (CVE-2020-12403) - Explicitly disable multi-part ChaCha20 (which was not functioning correctly) and more strictly enforce tag length. This was fixed in nss-3.55
Upstream bug: (currently private) https://bugzilla.mozilla.org/show_bug.cgi?id=1636771
Upstream patchset:
https://hg.mozilla.org/projects/nss/rev/f282556e6cc7715f5754aeaadda6f902590e7e38
https://hg.mozilla.org/projects/nss/rev/c25adfdfab34ddb08d3262aac3242e3399de1095
Discussion:
Acknowledgments:
Name: the Mozilla Project
---
External References:
https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.55_release_notes
---
Created nss tracking bugs for this issue:
Affects: fedora-all [
Bugzilla
CHACHA20-POLY1305 decryption with undersized tag leads to out-of-bounds read
bugzilla·2020-05-10
CHACHA20-POLY1305 decryption with undersized tag leads to out-of-bounds read
CHACHA20-POLY1305 decryption with undersized tag leads to out-of-bounds read
Created attachment 9147106
chacha20_oob_read.cpp
User Agent: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
Steps to reproduce:
Recent NSS checkout compiled on 64 bit Linux using:
./build.sh --clang --enable-fips --static --asan --disable-tests --fuzz=oss
Then compile and run the attached C++ file.
Actual results:
out-of-bounds read
==20341==ERROR: AddressSanitizer: global-buffer-overflow on address 0x00000085a697 at pc 0x00000063ca9c bp 0x7ffdb7d48510 sp 0x7ffdb7d48508
READ of size 1 at 0x00000085a697 thread T0
#0 0x63ca9b in Hacl_Chacha20Poly1305_256_aead_decrypt /mnt/2tb/cf-nss/sandbox/nss/out/Debug/../../lib/freebl/verified/Hacl_Chacha20Poly1305_256.c:1167:64
#1 0x58fedf
https://bugzilla.redhat.com/show_bug.cgi?id=1868931https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.55_release_noteshttps://lists.debian.org/debian-lts-announce/2023/02/msg00021.htmlhttps://security.netapp.com/advisory/ntap-20230324-0006/https://bugzilla.redhat.com/show_bug.cgi?id=1868931https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.55_release_noteshttps://lists.debian.org/debian-lts-announce/2023/02/msg00021.htmlhttps://security.netapp.com/advisory/ntap-20230324-0006/
2021-05-27
Published