Carry propagation issue in OpenSSL - CVE-2017-3736

 

Carry propagation issue in OpenSSL - CVE-2017-3736

Published: November 2, 2017


Vulnerability identifier: #VU9109
CSH Severity: Low
CVSS v4: 8.2 [CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-3736
CWE-ID: CWE-310
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to decrypt data.

The vulnerability exists due to carry propagating bug in the x86_64 Montgomery squaring procedure (bn_sqrx8x_internal). A remote attacker can decrypt encrypted data. The vulnerability affects processors that support the BMI1, BMI2 and ADX extensions like Intel Broadwell (5th generation) and later or AMD Ryzen.

Affected software

OpenSSL
Debian Linux
Arch Linux
Gentoo Linux
Amazon Linux AMI
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, big endian
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for Power
FreeBSD
SUSE Linux
Slackware Linux
Ubuntu
Fedora
openssl (Alpine package)
openssl
compat-openssl10
java-1.8.0-ibm-jdbc (Red Hat package)
java-1.8.0-ibm-plugin (Red Hat package)
java-1.8.0-ibm-src (Red Hat package)
java-1.8.0-ibm (Red Hat package)
java-1.8.0-ibm-devel (Red Hat package)
java-1.8.0-ibm-demo (Red Hat package)
Planning Analytics Local
Cognos Insight
IBM Cognos Analytics
IBM Algo One Core
IBM Cognos Controller
Red Hat Satellite
IBM MQ
NetWorker
IBM Cognos Business Intelligence Server
Oracle Communications EAGLE
Orion Platform
Flex System EN6131 40Gb Ethernet / IB6131 40Gb Infiniband Switch Firmware
Tivoli Network Manager IP Edition

How to mitigate CVE-2017-3736

Update to version 1.0.2m or 1.1.0g.

openssl (Alpine package) - addressed in versions 1.0.2m-r0, 1.0.2n-r0
Orion Platform - update to 2024.2
openssl - addressed in versions 1.0.2m-1.fc25, 1.1.0g-1.fc26, 1.1.0g-1.fc27
compat-openssl10 - addressed in versions 1.0.2m-1.fc26, 1.0.2m-1.fc27
java-1.8.0-ibm-jdbc (Red Hat package) - addressed in versions 1.8.0.5.20-1jpp.1.el6_10, 1.8.0.5.20-1jpp.1.el7
java-1.8.0-ibm-plugin (Red Hat package) - addressed in versions 1.8.0.5.20-1jpp.1.el6_10, 1.8.0.5.20-1jpp.1.el7
java-1.8.0-ibm-src (Red Hat package) - addressed in versions 1.8.0.5.20-1jpp.1.el6_10, 1.8.0.5.20-1jpp.1.el7
java-1.8.0-ibm (Red Hat package) - addressed in versions 1.8.0.5.20-1jpp.1.el6_10, 1.8.0.5.20-1jpp.1.el7
java-1.8.0-ibm-devel (Red Hat package) - addressed in versions 1.8.0.5.20-1jpp.1.el6_10, 1.8.0.5.20-1jpp.1.el7
java-1.8.0-ibm-demo (Red Hat package) - addressed in versions 1.8.0.5.20-1jpp.1.el6_10, 1.8.0.5.20-1jpp.1.el7
Flex System EN6131 40Gb Ethernet / IB6131 40Gb Infiniband Switch Firmware - update to 3.6.6000
Tivoli Network Manager IP Edition - addressed in versions 3.9.0.132, 4.1.1.49, 4.2.0.5
NetWorker - update to 19.10.0.0

External References

Related Security Bulletins