SB2014031002 - Cryptographic issues in libssh (Alpine package)
Published: March 10, 2014
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Cryptographic issues (CVE-ID: CVE-2014-0017)
The vulnerability allows a local non-authenticated attacker to gain access to sensitive information.
The RAND_bytes function in libssh before 0.6.3, when forking is enabled, does not properly reset the state of the OpenSSL pseudo-random number generator (PRNG), which causes the state to be shared between children processes and allows local users to obtain sensitive information by leveraging a pid collision.
Remediation
Install update from vendor's website.
References
- https://git.alpinelinux.org/aports/commit/?id=e8e76a7fc875728ab035b1f3200bdcb8d07e35b3
- https://git.alpinelinux.org/aports/commit/?id=81bee646224e15e457b47355e5bb55ec1a4de657
- https://git.alpinelinux.org/aports/commit/?id=92f52c32c1efe36eab6d287d0e847d9e91ed4d78
- https://git.alpinelinux.org/aports/commit/?id=70163d9da371acac9b3a91f6b2c6c17047421dfa