CVE-2020-12413
published 2023-02-16CVE-2020-12413: The Raccoon attack is a timing attack on DHE ciphersuites inherit in the TLS specification. To mitigate this vulnerability, Firefox disabled support for DHE…
PriorityP428medium5.9CVSS 3.1
AVNACHPRNUINSUCHINAN
EPSS
0.59%
44.5th percentile
The Raccoon attack is a timing attack on DHE ciphersuites inherit in the TLS specification. To mitigate this vulnerability, Firefox disabled support for DHE ciphersuites.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | nss | < nss 2:3.17-1 (bookworm) | nss 2:3.17-1 (bookworm) |
| mozilla | firefox | < 78.0 | 78.0 |
| mozilla | firefox | >= unspecified < 78 | 78 |
| mozilla | firefox_esr | < 68.10.0 | 68.10.0 |
| mozilla | firefox_esr | >= unspecified < 68.10 | 68.10 |
| mozilla | nss | >= 0 < 2:3.17-1 | 2:3.17-1 |
| mozilla | nss | >= 0 < 2:3.17-1 | 2:3.17-1 |
| mozilla | nss | >= 0 < 2:3.17-1 | 2:3.17-1 |
| mozilla | nss | >= 0 < 2:3.17-1 | 2:3.17-1 |
CVSS provenance
nvdv3.15.9MEDIUMCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
osv5.9MEDIUM
vendor_debian5.9MEDIUM
vendor_redhat5.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
nss: Information exposure when DH secret are reused across multiple TLS connections
vendor_redhat·2020-09-09·CVSS 5.9
CVE-2020-12413 [MEDIUM] CWE-385 nss: Information exposure when DH secret are reused across multiple TLS connections
nss: Information exposure when DH secret are reused across multiple TLS connections
The Raccoon attack is a timing attack on DHE ciphersuites inherit in the TLS specification. To mitigate this vulnerability, Firefox disabled support for DHE ciphersuites.
A flaw was found in Mozilla nss. A raccoon attack exploits a flaw in the TLS specification which can lead to an attacker being able to compute the pre-master secret in connections which have used a Diffie-Hellman(DH) based ciphersuite. In such a case this would result in the attacker being able to eavesdrop on all encrypted communications sent over that TLS connection. The highest threat from this vulnerability is to data confidentiality.
Statement: NSS as shipped with Red Hat Enterprise Linux 6, 7, and 8 does not re-use Diffie-Hellman
Debian
CVE-2020-12413: nss - The Raccoon attack is a timing attack on DHE ciphersuites inherit in the TLS spe...
vendor_debian·2020·CVSS 5.9
CVE-2020-12413 [MEDIUM] CVE-2020-12413: nss - The Raccoon attack is a timing attack on DHE ciphersuites inherit in the TLS spe...
The Raccoon attack is a timing attack on DHE ciphersuites inherit in the TLS specification. To mitigate this vulnerability, Firefox disabled support for DHE ciphersuites.
Scope: local
bookworm: resolved (fixed in 2:3.17-1)
bullseye: resolved (fixed in 2:3.17-1)
forky: resolved (fixed in 2:3.17-1)
sid: resolved (fixed in 2:3.17-1)
trixie: resolved (fixed in 2:3.17-1)
GHSA
GHSA-4mgq-9qgw-ghcx: The Raccoon attack is a timing attack on DHE ciphersuites inherit in the TLS specification
ghsa_unreviewed·2023-02-17
CVE-2020-12413 [MEDIUM] CWE-203 GHSA-4mgq-9qgw-ghcx: The Raccoon attack is a timing attack on DHE ciphersuites inherit in the TLS specification
The Raccoon attack is a timing attack on DHE ciphersuites inherit in the TLS specification. To mitigate this vulnerability, Firefox disabled support for DHE ciphersuites.
OSV
CVE-2020-12413: The Raccoon attack is a timing attack on DHE ciphersuites inherit in the TLS specification
osv·2023-02-16·CVSS 5.9
CVE-2020-12413 [MEDIUM] CVE-2020-12413: The Raccoon attack is a timing attack on DHE ciphersuites inherit in the TLS specification
The Raccoon attack is a timing attack on DHE ciphersuites inherit in the TLS specification. To mitigate this vulnerability, Firefox disabled support for DHE ciphersuites.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2020-12413 nss: Information exposure when DH secret are reused across multiple TLS connections
bugzilla·2020-09-09·CVSS 5.9
CVE-2020-12413 [MEDIUM] CVE-2020-12413 nss: Information exposure when DH secret are reused across multiple TLS connections
CVE-2020-12413 nss: Information exposure when DH secret are reused across multiple TLS connections
A flaw was found in Mozilla nss. Raccoon attack exploits a flaw in the TLS specification which can lead to an attacker being able to compute the pre-master secret in connections which have used a Diffie-Hellman (DH) based ciphersuite. In such a case this would result in the attacker being able to eavesdrop on all encrypted communications sent over that TLS connection. The highest threat from this vulnerability is to data confidentiality.
References:
https://raccoon-attack.com/
Discussion:
Created nss tracking bugs for this issue:
Affects: fedora-all [bug 1877558]
---
Statement:
NSS as shipped with Red Hat Enterprise Linux 6, 7, and 8 does not re-use Diffie-Hellman Ephemeral (DHE) key
Bugzilla
CVE-2020-12413 nss: Information exposure when DH secret are reused across multiple TLS connections [fedora-all]
bugzilla·2020-09-09·CVSS 5.9
CVE-2020-12413 [MEDIUM] CVE-2020-12413 nss: Information exposure when DH secret are reused across multiple TLS connections [fedora-all]
CVE-2020-12413 nss: Information exposure when DH secret are reused across multiple TLS connections [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue a
Bugzilla
Raccoon Attack (TLS specification timing side-channel)
bugzilla·2020-05-29
Raccoon Attack (TLS specification timing side-channel)
Raccoon Attack (TLS specification timing side-channel)
Created attachment 9152646
mod_lengths.txt
This e-mail was sent to [email protected] this morning (CEST):
Dear Mozilla Security Team,
We are writing to inform you about a new timing side-channel attack in
the TLS *specification* we call "raccoon attack".
Please forward this report to the person responsible for TLS (NSS) in
your company.
Please treat this report as confidential, since we are trying to
coordinate the disclosure of this finding.
Since the vulnerability is present in the standard, it may well be
applicable to most implementations, but we did not check whether your
implementation specifically is vulnerable to this attack. The best way
for you to determine whether it is vulnerable is to consult your
developers resp
2023-02-16
Published