Input validation error in OpenSSL - CVE-2014-3505
Published: August 14, 2014 / Updated: February 16, 2021
Vulnerability identifier: #VU41407
CSH Severity: Medium
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2014-3505
CWE-ID: CWE-20
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows remote attackers to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient validation of user-supplied input. A remote attacker can cause a denial of service (application crash) via crafted DTLS packets that trigger an error condition.
Affected software
OpenSSL
Amazon Linux AMI
Gentoo Linux
Fedora
Slackware Linux
HP Insight Control
HP-UX
FlashSystem V840 9846-AE1 & 9848-AE1
FlashSystem 840 9840-AE1 & 9843-AE1
SSL for OpenVMS
TMS RAMSAN 710 & 810 Machine Type 9833 -AS1 & -AE1
FlashSystem 710 & 810 Machine Type 9830 -AS1 & -AE1
IBM FlashSystem 720 and 820 Machine Type 9831 –AS2 and -AE2
TMS RAMSAN 720 and 820 machine type 9834 -AS2 & AE2
FlashSystem V840 9846-AC0 & -AC1 and 9848-AC0 & -AC1
mingw-openssl
IBM Storwize V7000
IBM Storwize V5000
IBM Storwize V3700
IBM Storwize V3500
SAN Volume Controller and Storwize Family
Amazon Linux AMI
Gentoo Linux
Fedora
Slackware Linux
HP Insight Control
HP-UX
FlashSystem V840 9846-AE1 & 9848-AE1
FlashSystem 840 9840-AE1 & 9843-AE1
SSL for OpenVMS
TMS RAMSAN 710 & 810 Machine Type 9833 -AS1 & -AE1
FlashSystem 710 & 810 Machine Type 9830 -AS1 & -AE1
IBM FlashSystem 720 and 820 Machine Type 9831 –AS2 and -AE2
TMS RAMSAN 720 and 820 machine type 9834 -AS2 & AE2
FlashSystem V840 9846-AC0 & -AC1 and 9848-AC0 & -AC1
mingw-openssl
IBM Storwize V7000
IBM Storwize V5000
IBM Storwize V3700
IBM Storwize V3500
SAN Volume Controller and Storwize Family
How to mitigate CVE-2014-3505
Install update from vendor's website.
mingw-openssl - addressed in versions 1.0.1j-1.el7, 1.0.1j-1.fc21
FlashSystem V840 9846-AE1 & 9848-AE1 - update to 1.1.2.7
FlashSystem 840 9840-AE1 & 9843-AE1 - update to 1.1.2.7
SSL for OpenVMS - update to 1.4-493
TMS RAMSAN 710 & 810 Machine Type 9833 -AS1 & -AE1 - update to 5.6.2
FlashSystem 710 & 810 Machine Type 9830 -AS1 & -AE1 - update to 5.6.2
IBM FlashSystem 720 and 820 Machine Type 9831 –AS2 and -AE2 - update to 6.3.2
TMS RAMSAN 720 and 820 machine type 9834 -AS2 & AE2 - update to 6.3.2
IBM Storwize V7000 - update to 7.2.0.9
IBM Storwize V5000 - addressed in versions 7.2.0.9, 7.3.0.7, 7.4.0.0
SAN Volume Controller and Storwize Family - addressed in versions 7.2.0.9, 7.3.0.7, 7.4.0.0
IBM Storwize V3700 - addressed in versions 7.2.0.9, 7.3.0.7, 7.4.0.0
IBM Storwize V3500 - addressed in versions 7.2.0.9, 7.3.0.7, 7.4.0.0
FlashSystem V840 9846-AC0 & -AC1 and 9848-AC0 & -AC1 - update to 7.3.0.7
FlashSystem V840 9846-AE1 & 9848-AE1 - update to 1.1.2.7
FlashSystem 840 9840-AE1 & 9843-AE1 - update to 1.1.2.7
SSL for OpenVMS - update to 1.4-493
TMS RAMSAN 710 & 810 Machine Type 9833 -AS1 & -AE1 - update to 5.6.2
FlashSystem 710 & 810 Machine Type 9830 -AS1 & -AE1 - update to 5.6.2
IBM FlashSystem 720 and 820 Machine Type 9831 –AS2 and -AE2 - update to 6.3.2
TMS RAMSAN 720 and 820 machine type 9834 -AS2 & AE2 - update to 6.3.2
IBM Storwize V7000 - update to 7.2.0.9
IBM Storwize V5000 - addressed in versions 7.2.0.9, 7.3.0.7, 7.4.0.0
SAN Volume Controller and Storwize Family - addressed in versions 7.2.0.9, 7.3.0.7, 7.4.0.0
IBM Storwize V3700 - addressed in versions 7.2.0.9, 7.3.0.7, 7.4.0.0
IBM Storwize V3500 - addressed in versions 7.2.0.9, 7.3.0.7, 7.4.0.0
FlashSystem V840 9846-AC0 & -AC1 and 9848-AC0 & -AC1 - update to 7.3.0.7
External References
- ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2014-008.txt.asc
- http://aix.software.ibm.com/aix/efixes/security/openssl_advisory10.asc
- http://linux.oracle.com/errata/ELSA-2014-1052.html
- http://linux.oracle.com/errata/ELSA-2014-1053.html
- http://lists.fedoraproject.org/pipermail/package-announce/2014-August/136470.html
- http://lists.fedoraproject.org/pipermail/package-announce/2014-August/136473.html
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00011.html
- http://lists.opensuse.org/opensuse-updates/2014-08/msg00036.html
- http://marc.info/?l=bugtraq&m=140853041709441&w=2
- http://marc.info/?l=bugtraq&m=141077370928502&w=2
- http://marc.info/?l=bugtraq&m=142660345230545&w=2
- http://rhn.redhat.com/errata/RHSA-2014-1256.html
- http://rhn.redhat.com/errata/RHSA-2014-1297.html
- http://secunia.com/advisories/58962
- http://secunia.com/advisories/59221
- http://secunia.com/advisories/59700
- http://secunia.com/advisories/59710
- http://secunia.com/advisories/59743
- http://secunia.com/advisories/59756
- http://secunia.com/advisories/60022
- http://secunia.com/advisories/60221
- http://secunia.com/advisories/60493
- http://secunia.com/advisories/60684
- http://secunia.com/advisories/60687
- http://secunia.com/advisories/60778
- http://secunia.com/advisories/60803
- http://secunia.com/advisories/60824
- http://secunia.com/advisories/60917
- http://secunia.com/advisories/60921
- http://secunia.com/advisories/60938
- http://secunia.com/advisories/61040
- http://secunia.com/advisories/61100
- http://secunia.com/advisories/61184
- http://secunia.com/advisories/61250
- http://secunia.com/advisories/61775
- http://secunia.com/advisories/61959
- http://security.gentoo.org/glsa/glsa-201412-39.xml
- http://support.f5.com/kb/en-us/solutions/public/15000/500/sol15573.html
- http://www.debian.org/security/2014/dsa-2998
- http://www.huawei.com/en/security/psirt/security-bulletins/security-advisories/hw-372998.htm
- http://www.mandriva.com/security/advisories?name=MDVSA-2014:158
- http://www.securityfocus.com/bid/69081
- http://www.securitytracker.com/id/1030693
- http://www-01.ibm.com/support/docview.wss?uid=nas8N1020240
- http://www-01.ibm.com/support/docview.wss?uid=swg21682293
- http://www-01.ibm.com/support/docview.wss?uid=swg21683389
- http://www-01.ibm.com/support/docview.wss?uid=swg21686997
- https://git.openssl.org/gitweb/?p=openssl.git;a=commit;h=bff1ce4e6a1c57c3d0a5f9e4f85ba6385fccfe8b
- https://lists.balabit.hu/pipermail/syslog-ng-announce/2014-September/000196.html
- https://www.openssl.org/news/secadv_20140806.txt
Related Security Bulletins
- Multiple vulnerabilities in OpenSSL
- Amazon Linux AMI update for openssl
- Gentoo update for OpenSSL
- Slackware Linux update for openssl
- Multiple vulnerabilities in IBM FlashSystem 840 and V840
- Multiple vulnerabilities in IBM FlashSystem (and TMS RAMSAN) 710, 720, 810, and 820 systems
- Multiple vulnerabilities in HP Insight Control for Linux CMS Preboot Execution Environment
- Multiple vulnerabilities in HP OpenVMS running OpenSSL
- Multiple vulnerabilities in HP-UX running OpenSSL
- Multiple vulnerabilities in Lenovo SAN Volume Controller and Storwize Family
- Multiple vulnerabilities in IBM SAN Volume Controller and Storwize Family
- Fedora 21 update for mingw-openssl
- Fedora EPEL 7 update for mingw-openssl