Use of a broken or risky cryptographic algorithm in OpenSSH - CVE-2020-14145
Published: July 30, 2020 / Updated: December 4, 2020
Vulnerability details
The vulnerability allows a remote attacker to perform MitM attack.
The vulnerability exists in openssh client during algorithm negotiation due to observable discrepancy. A remote attacker can perform a Man-in-the-Middle (MitM) attack.
Affected software
Gentoo Linux
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for ARM 64
Anolis OS
openEuler
IBM Integrated Analytics System
openssh (Alpine package)
pam_ssh_agent_auth
openssh (Red Hat package)
openssh-cavs
openssh-clients
openssh-keycat
openssh-ldap
openssh-server
openssh-askpass
openssh
RecoverPoint for Virtual Machines
Security Event Manager (SEM)
Red Hat Advanced Cluster Management for Kubernetes
QuTS hero
Dell EMC NetWorker vProxy
QNAP QTS
RSA Authentication Manager
Gaia
How to mitigate CVE-2020-14145
Cybersecurity Help is currently unaware of any official solution to address this vulnerability.
Partial mitigation against this issue was included in OpenSSH 8.4
RecoverPoint for Virtual Machines - update to 6.0 SP2 P1
Security Event Manager (SEM) - update to 2024.2
QuTS hero - update to h5.1.8.2823 build 20240712
pam_ssh_agent_auth - update to 0.10.3-7.13.0.1
pam_ssh_agent_auth - update to 0.10.3-9.9
Red Hat Advanced Cluster Management for Kubernetes - update to 2.2.10
Dell EMC NetWorker vProxy - update to 4.3.0-12
QNAP QTS - update to 5.1.8.2823 20240712
openssh (Red Hat package) - update to 8.0p1-10.el8
openssh-cavs - update to 8.0p1-13.0.1
openssh-clients - update to 8.0p1-13.0.1
openssh-keycat - update to 8.0p1-13.0.1
openssh-ldap - update to 8.0p1-13.0.1
openssh-server - update to 8.0p1-13.0.1
openssh-askpass - update to 8.0p1-13.0.1
openssh - update to 8.0p1-13.0.1
RSA Authentication Manager - update to 8.5 Patch 3
Gaia - update to R81.10 Take 55
External References
- https://github.com/openssh/openssh-portable/compare/V_8_3_P1...V_8_4_P1
- https://security.netapp.com/advisory/ntap-20200709-0004/
- https://www.fzi.de/en/news/news/detail-en/artikel/fsa-2020-2-ausnutzung-eines-informationslecks-fuer-gezielte-mitm-angriffe-auf-ssh-clients/
- https://anongit.mindrot.org/openssh.git/commit/?id=b3855ff053f5078ec3d3c653cdaedefaa5fc362d
Related Security Bulletins
- MitM attack in OpenSSH client
- Use of a broken or risky cryptographic algorithm in openssh (Alpine package)
- Gentoo update for OpenSSH
- Multiple vulnerabilities in Dell NetWorker vProxy
- Red Hat Enterprise Linux 8 update for openssh
- Multiple vulnerabilities in Check Point Gaia
- openEuler update for openssh
- SolarWinds Security Event Manager (SEM) update for third-party components
- Multiple vulnerabilities in QNAP QTS and QuTS hero
- Anolis OS update for openssh
- RSA Authentication Manager update for third-party components
- Dell RecoverPoint for Virtual Machines update for third-party components
- IBM Integrated Analytics System update for OpenSSH
- Multiple vulnerabilities in Red Hat Advanced Cluster Management for Kubernetes 2.2