Man-in-the-middle attack in Northstar Controller - CVE-2017-1000385
Published: April 16, 2018 / Updated: October 13, 2025
Vulnerability identifier: #VU11845
CSH Severity: Low
CVSS v4: 6.3 [CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-1000385
CWE-ID: CWE-300
Exploitation vector: Remote access
Exploit availability:
The vulnerability is being exploited in the wild
Vulnerability details
The vulnerability allows a remote attacker to conduct man-in-the-middle attack on the target system.
The weakness exists due to performing RSA decryption and signing operations with the private key of a TLS server. A remote attacker can gain access to potentially sensitive information.
The weakness exists due to performing RSA decryption and signing operations with the private key of a TLS server. A remote attacker can gain access to potentially sensitive information.
Affected software
Northstar Controller
Red Hat OpenStack
Red Hat OpenStack for IBM Power
Debian Linux
Fedora
otp
erlang
Red Hat OpenStack
Red Hat OpenStack for IBM Power
Debian Linux
Fedora
otp
erlang
How to mitigate CVE-2017-1000385
Install update from vendor's website.
Northstar Controller - addressed in versions 3.0.1, 3.2.1, 4.0.0
otp - addressed in versions 18.3.4.7, 19.3.6.4, 20.1.7
erlang - addressed in versions 19.3.6.4-1.fc26, 19.3.6.4-1.fc27
otp - addressed in versions 18.3.4.7, 19.3.6.4, 20.1.7
erlang - addressed in versions 19.3.6.4-1.fc26, 19.3.6.4-1.fc27