Carry propagation issue in OpenSSL - CVE-2017-3736
Published: November 2, 2017
Vulnerability identifier: #VU9109
CSH Severity: Low
CVSS v4: 8.2 [CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-3736
CWE-ID: CWE-310
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to decrypt data.
The vulnerability exists due to carry propagating bug in the x86_64 Montgomery squaring procedure (bn_sqrx8x_internal). A remote attacker can decrypt encrypted data. The vulnerability affects processors that support the BMI1, BMI2 and ADX extensions like Intel Broadwell (5th generation) and later or AMD Ryzen.
The vulnerability exists due to carry propagating bug in the x86_64 Montgomery squaring procedure (bn_sqrx8x_internal). A remote attacker can decrypt encrypted data. The vulnerability affects processors that support the BMI1, BMI2 and ADX extensions like Intel Broadwell (5th generation) and later or AMD Ryzen.
Affected software
OpenSSL
Debian Linux
Arch Linux
Gentoo Linux
Amazon Linux AMI
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, big endian
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for Power
FreeBSD
SUSE Linux
Slackware Linux
Ubuntu
Fedora
openssl (Alpine package)
openssl
compat-openssl10
java-1.8.0-ibm-jdbc (Red Hat package)
java-1.8.0-ibm-plugin (Red Hat package)
java-1.8.0-ibm-src (Red Hat package)
java-1.8.0-ibm (Red Hat package)
java-1.8.0-ibm-devel (Red Hat package)
java-1.8.0-ibm-demo (Red Hat package)
Planning Analytics Local
Cognos Insight
IBM Cognos Analytics
IBM Algo One Core
IBM Cognos Controller
Red Hat Satellite
IBM MQ
NetWorker
IBM Cognos Business Intelligence Server
Oracle Communications EAGLE
Orion Platform
Flex System EN6131 40Gb Ethernet / IB6131 40Gb Infiniband Switch Firmware
Tivoli Network Manager IP Edition
Debian Linux
Arch Linux
Gentoo Linux
Amazon Linux AMI
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, big endian
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for Power
FreeBSD
SUSE Linux
Slackware Linux
Ubuntu
Fedora
openssl (Alpine package)
openssl
compat-openssl10
java-1.8.0-ibm-jdbc (Red Hat package)
java-1.8.0-ibm-plugin (Red Hat package)
java-1.8.0-ibm-src (Red Hat package)
java-1.8.0-ibm (Red Hat package)
java-1.8.0-ibm-devel (Red Hat package)
java-1.8.0-ibm-demo (Red Hat package)
Planning Analytics Local
Cognos Insight
IBM Cognos Analytics
IBM Algo One Core
IBM Cognos Controller
Red Hat Satellite
IBM MQ
NetWorker
IBM Cognos Business Intelligence Server
Oracle Communications EAGLE
Orion Platform
Flex System EN6131 40Gb Ethernet / IB6131 40Gb Infiniband Switch Firmware
Tivoli Network Manager IP Edition
How to mitigate CVE-2017-3736
Update to version 1.0.2m or 1.1.0g.
openssl (Alpine package) - addressed in versions 1.0.2m-r0, 1.0.2n-r0
Orion Platform - update to 2024.2
openssl - addressed in versions 1.0.2m-1.fc25, 1.1.0g-1.fc26, 1.1.0g-1.fc27
compat-openssl10 - addressed in versions 1.0.2m-1.fc26, 1.0.2m-1.fc27
java-1.8.0-ibm-jdbc (Red Hat package) - addressed in versions 1.8.0.5.20-1jpp.1.el6_10, 1.8.0.5.20-1jpp.1.el7
java-1.8.0-ibm-plugin (Red Hat package) - addressed in versions 1.8.0.5.20-1jpp.1.el6_10, 1.8.0.5.20-1jpp.1.el7
java-1.8.0-ibm-src (Red Hat package) - addressed in versions 1.8.0.5.20-1jpp.1.el6_10, 1.8.0.5.20-1jpp.1.el7
java-1.8.0-ibm (Red Hat package) - addressed in versions 1.8.0.5.20-1jpp.1.el6_10, 1.8.0.5.20-1jpp.1.el7
java-1.8.0-ibm-devel (Red Hat package) - addressed in versions 1.8.0.5.20-1jpp.1.el6_10, 1.8.0.5.20-1jpp.1.el7
java-1.8.0-ibm-demo (Red Hat package) - addressed in versions 1.8.0.5.20-1jpp.1.el6_10, 1.8.0.5.20-1jpp.1.el7
Flex System EN6131 40Gb Ethernet / IB6131 40Gb Infiniband Switch Firmware - update to 3.6.6000
Tivoli Network Manager IP Edition - addressed in versions 3.9.0.132, 4.1.1.49, 4.2.0.5
NetWorker - update to 19.10.0.0
Orion Platform - update to 2024.2
openssl - addressed in versions 1.0.2m-1.fc25, 1.1.0g-1.fc26, 1.1.0g-1.fc27
compat-openssl10 - addressed in versions 1.0.2m-1.fc26, 1.0.2m-1.fc27
java-1.8.0-ibm-jdbc (Red Hat package) - addressed in versions 1.8.0.5.20-1jpp.1.el6_10, 1.8.0.5.20-1jpp.1.el7
java-1.8.0-ibm-plugin (Red Hat package) - addressed in versions 1.8.0.5.20-1jpp.1.el6_10, 1.8.0.5.20-1jpp.1.el7
java-1.8.0-ibm-src (Red Hat package) - addressed in versions 1.8.0.5.20-1jpp.1.el6_10, 1.8.0.5.20-1jpp.1.el7
java-1.8.0-ibm (Red Hat package) - addressed in versions 1.8.0.5.20-1jpp.1.el6_10, 1.8.0.5.20-1jpp.1.el7
java-1.8.0-ibm-devel (Red Hat package) - addressed in versions 1.8.0.5.20-1jpp.1.el6_10, 1.8.0.5.20-1jpp.1.el7
java-1.8.0-ibm-demo (Red Hat package) - addressed in versions 1.8.0.5.20-1jpp.1.el6_10, 1.8.0.5.20-1jpp.1.el7
Flex System EN6131 40Gb Ethernet / IB6131 40Gb Infiniband Switch Firmware - update to 3.6.6000
Tivoli Network Manager IP Edition - addressed in versions 3.9.0.132, 4.1.1.49, 4.2.0.5
NetWorker - update to 19.10.0.0
External References
Related Security Bulletins
- MitM attack in OpenSSL
- Slackware Linux update for openssl
- Debian update for openssl1.0
- Debian update for openssl
- Ubuntu update for OpenSSL
- Arch Linux update for openssl
- Arch Linux update for lib32-openssl
- FreeBSD update for OpenSSL
- Gentoo update for OpenSSL
- Arch Linux update for openssl-1.0
- Arch Linux update for lib32-openssl-1.0
- Red Hat update for openssl
- Multiple vulnerabilities in IBM WebSphere MQ
- Multiple vulnerabilities in IBM Cognos Controller
- Amazon Linux AMI update for openssl
- OpenSUSE Linux update for openssl
- SUSE Linux update for openssl
- Multiple vulnerabilities in IBM MQ
- Multiple vulnerabilities in IBM Algo One Core
- Multiple vulnerabilities in IBM Planning Analytics Local
- Multiple vulnerabilities in IBM Cognos Insight
- Multiple vulnerabilities in IBM Cognos Business Intelligence Server
- Multiple vulnerabilities in IBM Cognos Analytics
- Carry propagation issue in openssl (Alpine package)
- Multiple vulnerabilities in IBM Tivoli Network Manager IP Edition
- Multiple vulnerabilities in Dell Networker
- SolarWinds Platform update for third-party components
- Fedora 27 update for openssl
- Fedora 26 update for openssl
- Fedora 25 update for openssl
- Fedora 27 update for compat-openssl10
- Fedora 26 update for compat-openssl10
- Red Hat Enterprise Linux 7 Supplementary update for java-1.8.0-ibm
- Red Hat Enterprise Linux 6 Supplementary update for java-1.8.0-ibm
- Red Hat Satellite 5 update for java-1.8.0-ibm
- Carry propagation issue in Oracle Communications EAGLE Software
- Multiple vulnerabilities in IBM Flex System EN6131 40Gb Ethernet / IB6131 40Gb Infiniband Switch Firmware