Information disclosure in OpenSSL - CVE-2018-0737
Published: April 17, 2018
Vulnerability identifier: #VU11854
CSH Severity: Low
CVSS v4: 4.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-0737
CWE-ID: CWE-200
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a local attacker to obtain potentially sensitive information on the target system.
The weakness exists in the RSA key generation algorithm's BN_mod_inverse() and BN_mod_exp_mont() functions due to a cache timing side channel attack. A local attacker can recover the private key.
The weakness exists in the RSA key generation algorithm's BN_mod_inverse() and BN_mod_exp_mont() functions due to a cache timing side channel attack. A local attacker can recover the private key.
Affected software
OpenSSL
Amazon Linux AMI
Debian Linux
Gentoo Linux
IBM AIX
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power
Slackware Linux
Opensuse
Fedora
JBoss Core Services
IBM VIOS
openssl (Alpine package)
openssl (Debian package)
compat-openssl10
openssl
IBM MQ
NetWorker
Orion Platform
Dynamic System Analysis (DSA) Preboot
Integrated Management Module II (IMM2) for BladeCenter Systems
EMC Cloud Tiering Appliance
Flex System Integrated Management Module (IMM2)
System x Integrated Management Module (IMM2)
GCM16 & GCM32 KVM Switch Firmware
SBR Carrier
Amazon Linux AMI
Debian Linux
Gentoo Linux
IBM AIX
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power
Slackware Linux
Opensuse
Fedora
JBoss Core Services
IBM VIOS
openssl (Alpine package)
openssl (Debian package)
compat-openssl10
openssl
IBM MQ
NetWorker
Orion Platform
Dynamic System Analysis (DSA) Preboot
Integrated Management Module II (IMM2) for BladeCenter Systems
EMC Cloud Tiering Appliance
Flex System Integrated Management Module (IMM2)
System x Integrated Management Module (IMM2)
GCM16 & GCM32 KVM Switch Firmware
SBR Carrier
How to mitigate CVE-2018-0737
Update to versions 1.1.0i or 1.0.2p.
openssl (Alpine package) - update to 1.0.2o-r1
openssl (Debian package) - update to 1.1.0j-1~deb9u1
IBM MQ - update to 5.3.1.15
Orion Platform - update to 2024.2
Dynamic System Analysis (DSA) Preboot - update to dsyte2z-9.65
Flex System Integrated Management Module (IMM2) - update to 1AOO88B-7.20
System x Integrated Management Module (IMM2) - update to 1AOO88B-7.20
Integrated Management Module II (IMM2) for BladeCenter Systems - update to 1AOO88B-7.20-bc
compat-openssl10 - addressed in versions 1.0.2o-7.fc29, 1.0.2o-7.fc30, 1.0.2o-8.fc31
openssl - addressed in versions 1.1.0i-1.fc27, 1.1.0i-1.fc28
GCM16 & GCM32 KVM Switch Firmware - update to 2.4.0.25463
SBR Carrier - addressed in versions 8.4.1R13, 8.5.0R4
EMC Cloud Tiering Appliance - update to 12.1.0.65
NetWorker - update to 19.10.0.0
openssl (Debian package) - update to 1.1.0j-1~deb9u1
IBM MQ - update to 5.3.1.15
Orion Platform - update to 2024.2
Dynamic System Analysis (DSA) Preboot - update to dsyte2z-9.65
Flex System Integrated Management Module (IMM2) - update to 1AOO88B-7.20
System x Integrated Management Module (IMM2) - update to 1AOO88B-7.20
Integrated Management Module II (IMM2) for BladeCenter Systems - update to 1AOO88B-7.20-bc
compat-openssl10 - addressed in versions 1.0.2o-7.fc29, 1.0.2o-7.fc30, 1.0.2o-8.fc31
openssl - addressed in versions 1.1.0i-1.fc27, 1.1.0i-1.fc28
GCM16 & GCM32 KVM Switch Firmware - update to 2.4.0.25463
SBR Carrier - addressed in versions 8.4.1R13, 8.5.0R4
EMC Cloud Tiering Appliance - update to 12.1.0.65
NetWorker - update to 19.10.0.0
External References
Related Security Bulletins
- Information disclosure in OpenSSL
- Amazon Linux AMI update for openssl
- Information disclosure in IBM AIX and VIOS
- Slackware Linux update for openssl
- OpenSUSE Linux update for openssl-1
- OpenSUSE Linux update for openssl
- Multiple vulnerabilities in IBM MQ
- Gentoo update for OpenSSL
- Debian update for openssl
- Debian update for openssl1.0
- OpenSUSE Linux update for openssl-1
- OpenSUSE Linux update for compat-openssl098
- Red Hat update for openssl
- Red Hat JBoss Core Services update for Apache HTTP Server 2.4.37
- Red Hat JBoss Core Services update for Apache HTTP Server 2.4.37 (RHEL 6)
- Red Hat JBoss Core Services update Apache HTTP Server 2.4.37 (RHEL 7)
- Information disclosure in openssl (Alpine package)
- Multiple vulnerabilities in Dell EMC Cloud Tiering Appliance Family
- Juniper Networks Steel-Belted Radius (SBR) Carrier update for OpenSSL
- Multiple vulnerabilities in Dell Networker
- SolarWinds Platform update for third-party components
- Multiple vulnerabilities in IBM GCM16 & GCM32 KVM Switch Firmware
- Multiple vulnerabilities in IBM Dynamic System Analysis (DSA) Preboot
- IBM Integrated Management Module II (IMM2) update for OpenSSL
- Fedora 27 update for openssl
- Fedora 28 update for openssl
- Fedora 31 update for compat-openssl10
- Fedora 29 update for compat-openssl10
- Fedora 30 update for compat-openssl10