SkipNavigation
US-CERT
American Flag
  Vulnerability
Notes
Database

Search Vulnerability Notes

Vulnerability Notes Help Information


 
 View Notes By
  Name

ID Number

CVE Name

Date Public

Date Published

Date Updated

Severity Metric



 Other Documents
  Technical Alerts

Technical Bulletins

Alerts

Security Tips

Vulnerability Note VU#724968

RSA key reconstruction vulnerability

Overview

Various implementations of RSA may contain a vulnerability that could allow an attacker to retrieve encryption keys.

I. Description

Some implementations of RSA may contain a vulnerability that could allow a local attacker to retrieve encryption keys.

OpenSSL is a widely used open source implementation of the SSL and TLS protocols. OpenSSL is based on the SSLeay library. OpenSSL provides support for the RSA encryption algorithm. Note that vendors may include a vulnerable version of OpenSSL in web servers, VPN, or other products.

II. Impact

An attacker could possibly decrypt messages that were encrypted with OpenSSL using RSA algorithm.

III. Solution

Apply a patch

OpenSSL has released a patch to address this issue. See http://openssl.org/news/patch-CVE-2007-3108.txt for more details. See the systems affected portion of this document for a partial list of other vendors who may be affected.

Systems Affected

VendorStatusDate NotifiedDate Updated
America Online, Inc.Unknown28-Jun-2007
Apache-SSLUnknown28-Jun-2007
Apache HTTP Server ProjectUnknown28-Jun-2007
Apple Computer, Inc.Unknown1-Aug-2007
Aruba Networks, Inc.Unknown28-Jun-2007
AttachmateWRQ, Inc.Unknown28-Jun-2007
CerticomUnknown28-Jun-2007
Conectiva Inc.Unknown1-Aug-2007
Covalent TechnologiesUnknown28-Jun-2007
Cray Inc.Unknown1-Aug-2007
CryptlibUnknown2-Aug-2007
Crypto++ LibraryUnknown28-Jun-2007
Debian GNU/LinuxUnknown1-Aug-2007
EMC CorporationUnknown1-Aug-2007
Engarde Secure LinuxUnknown1-Aug-2007
F-Secure CorporationUnknown31-Jul-2007
F5 Networks, Inc.Unknown28-Jun-2007
Fedora ProjectUnknown1-Aug-2007
FreeBSD, Inc.Unknown1-Aug-2007
FujitsuUnknown1-Aug-2007
Gentoo LinuxUnknown1-Aug-2007
Hewlett-Packard CompanyUnknown1-Aug-2007
HitachiUnknown1-Aug-2007
IAIK Java GroupUnknown28-Jun-2007
IBM CorporationUnknown1-Aug-2007
IBM Corporation (zseries)Unknown1-Aug-2007
IBM eServerUnknown1-Aug-2007
Immunix Communications, Inc.Unknown1-Aug-2007
Ingrian Networks, Inc.Unknown28-Jun-2007
Juniper Networks, Inc.Unknown1-Aug-2007
Lotus SoftwareUnknown28-Jun-2007
lshUnknown28-Jun-2007
Mandriva, Inc.Unknown1-Aug-2007
Microsoft CorporationUnknown28-Jun-2007
Mirapoint, Inc.Unknown28-Jun-2007
mod_sslUnknown28-Jun-2007
MontaVista Software, Inc.Unknown1-Aug-2007
MozillaUnknown28-Jun-2007
NEC CorporationUnknown1-Aug-2007
NetBSDUnknown1-Aug-2007
Netscape NSSUnknown28-Jun-2007
NokiaUnknown28-Jun-2007
Novell, Inc.Unknown1-Aug-2007
OpenBSDUnknown1-Aug-2007
OpenSSHUnknown13-Aug-2007
OpenSSLVulnerable2-Aug-2007
Openwall GNU/*/LinuxUnknown1-Aug-2007
QNX, Software Systems, Inc.Unknown1-Aug-2007
Red Hat, Inc.Unknown1-Aug-2007
RSA Security, Inc.Unknown28-Jun-2007
Secure Computing Network Security DivisionUnknown27-Aug-2007
Silicon Graphics, Inc.Unknown1-Aug-2007
Slackware Linux Inc.Unknown1-Aug-2007
Sony CorporationUnknown1-Aug-2007
SpyrusUnknown28-Jun-2007
StunnelUnknown28-Jun-2007
Sun Microsystems, Inc.Unknown28-Jun-2007
SUSE LinuxUnknown1-Aug-2007
The SCO GroupUnknown1-Aug-2007
Trustix Secure LinuxUnknown1-Aug-2007
TurbolinuxUnknown1-Aug-2007
UbuntuUnknown1-Aug-2007
UnisysUnknown1-Aug-2007
Wind River Systems, Inc.Unknown1-Aug-2007

References


http://openssl.org/news/patch-CVE-2007-3108.txt
http://cvs.openssl.org/chngview?cn=16275
http://www.openssl.org/docs/apps/rsa.html#
http://en.wikipedia.org/wiki/Rsa

Credit

Thanks to Dr. Onur Aciicmez, Samsung Information Systems America, Samsung Electronics R&D Center, USA, and Prof. Werner Schindler, Bundesamt für Sicherheit in der Informationstechnik (BSI), Germany for reporting this vulnerability.

This document was written by Ryan Giobbi.

Other Information

Date Public:2007-08-02
Date First Published:2007-08-01
Date Last Updated:2007-08-28
CERT Advisory: 
CVE-ID(s):CVE-2007-3108
NVD-ID(s):CVE-2007-3108
US-CERT Technical Alerts: 
Metric:1.77
Document Revision:25

If you have feedback, comments, or additional information about this vulnerability, please send us email.
 

 
Page Corner Image
Produced 2007 by US-CERT, a government organization
Disclaimers and copyright information
Get Adobe Reader Get Adobe Reader