Information disclosure in OpenSSL - CVE-2018-0737

 

Information disclosure in OpenSSL - CVE-2018-0737

Published: April 17, 2018


Vulnerability identifier: #VU11854
CSH Severity: Low
CVSS v4: 4.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-0737
CWE-ID: CWE-200
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local attacker to obtain potentially sensitive information on the target system.

The weakness exists in the RSA key generation algorithm's BN_mod_inverse() and BN_mod_exp_mont() functions due to a cache timing side channel attack. A local attacker can recover the private key.

Affected software

OpenSSL
Amazon Linux AMI
Debian Linux
Gentoo Linux
IBM AIX
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power
Slackware Linux
Opensuse
Fedora
JBoss Core Services
IBM VIOS
openssl (Alpine package)
openssl (Debian package)
compat-openssl10
openssl
IBM MQ
NetWorker
Orion Platform
Dynamic System Analysis (DSA) Preboot
Integrated Management Module II (IMM2) for BladeCenter Systems
EMC Cloud Tiering Appliance
Flex System Integrated Management Module (IMM2)
System x Integrated Management Module (IMM2)
GCM16 & GCM32 KVM Switch Firmware
SBR Carrier

How to mitigate CVE-2018-0737

Update to versions 1.1.0i or 1.0.2p.

openssl (Alpine package) - update to 1.0.2o-r1
openssl (Debian package) - update to 1.1.0j-1~deb9u1
IBM MQ - update to 5.3.1.15
Orion Platform - update to 2024.2
Dynamic System Analysis (DSA) Preboot - update to dsyte2z-9.65
Flex System Integrated Management Module (IMM2) - update to 1AOO88B-7.20
System x Integrated Management Module (IMM2) - update to 1AOO88B-7.20
Integrated Management Module II (IMM2) for BladeCenter Systems - update to 1AOO88B-7.20-bc
compat-openssl10 - addressed in versions 1.0.2o-7.fc29, 1.0.2o-7.fc30, 1.0.2o-8.fc31
openssl - addressed in versions 1.1.0i-1.fc27, 1.1.0i-1.fc28
GCM16 & GCM32 KVM Switch Firmware - update to 2.4.0.25463
SBR Carrier - addressed in versions 8.4.1R13, 8.5.0R4
EMC Cloud Tiering Appliance - update to 12.1.0.65
NetWorker - update to 19.10.0.0

External References

Related Security Bulletins