Input validation error in OpenSSL - CVE-2016-2181

 

Input validation error in OpenSSL - CVE-2016-2181

Published: December 21, 2016 / Updated: March 6, 2023


Vulnerability identifier: #VU1975
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2016-2181
CWE-ID: CWE-20
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to insufficient validation of user-supplied input within the Anti-Replay feature in the DTLS implementation when using a new epoch number in conjunction with a large sequence number. A remote attacker can perform a denial of service (DoS) attack (false-positive packet drops) via spoofed DTLS records.


Affected software

OpenSSL
Arch Linux
Fedora
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux for Power, big endian
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support
Red Hat Enterprise Linux Server - TUS
Red Hat Enterprise Linux for Power, big endian - Extended Update Support
Red Hat Enterprise Linux EUS Compute Node
Red Hat Enterprise Linux for Power, little endian - Extended Update Support
Red Hat Enterprise Linux Server - Extended Update Support
Red Hat Enterprise Linux Server - AUS
Slackware Linux
Opensuse
openssl (Alpine package)
Data ONTAP operating in 7-Mode
lib32-openssl
openssl101e
openssl (Red Hat package)
openssl-solibs
openssl
SnapDrive for Windows
IBM Integrated Management Module
Integrated Management Module II (IMM2)
Network Advisor
Puppet Agent
FOS Firmware
NetWorker
Puppet Enterprise

How to mitigate CVE-2016-2181

Install update from vendor's website.

OpenSSL - addressed in versions 1.0.1u, 1.0.2i
openssl (Alpine package) - update to 1.0.1t-r2
SnapDrive for Windows - update to 7.1.4
Data ONTAP operating in 7-Mode - update to 8.2.5
IBM Integrated Management Module - update to YUOOH4B - 1.53
Integrated Management Module II (IMM2) - update to 1AOO76I-6.00
lib32-openssl - update to 1
openssl101e - update to 1.0.1e-9.el5
openssl (Red Hat package) - addressed in versions 1.0.1e-48.el6_8.3, 1.0.1e-51.el7_2.7
openssl-solibs - addressed in versions 1.0.1u, 1.0.2i
openssl - addressed in versions 1.0.1u, 1.0.2i
openssl - update to 1.0.2.i-1
openssl - addressed in versions 1.0.2j-1.fc23, 1.0.2j-1.fc24, 1.0.2j-1.fc25
Puppet Agent - update to 1.7.1
FOS Firmware - addressed in versions 7.4.2a, 8.01c
Network Advisor - update to 14.0.2
NetWorker - update to 19.10.0.0
Puppet Enterprise - update to 2016.4.0

External References

Related Security Bulletins