OpenSSL ssl3_get_key_exchange () Vulnerability
Released on: 2010-08-07
Updated on: 2010-08-10
Affected Systems:
OpenSSL Project OpenSSL 1.0.0a
Description:
--------------------------------------------------------------------------------
Bugtraq id: 42306
OpenSSL is an open-source SSL implementation that implements high-strength encryption for network communication. It is widely used in various network applications.
The ssl3_get_key_exchange () function in the ssl/s3_clnt.c file of OpenSSL has an error after being released, if a user is cheated to connect to a malicious server and accepts a malicious certificate, it may cause a denial of service or completely intrude into applications using the OpenSSL library.
<* Source: Georgi Guninski (guninski@guninski.com)
Link: http://secunia.com/advisories/40906/
Http://marc.info /? L = full-disclosure & m = 128118059715976 & w = 2
*>
Test method:
--------------------------------------------------------------------------------
Alert
The following procedures (methods) may be offensive and are intended only for security research and teaching. Users are at your own risk!
Http://marc.info /? L = full-disclosure & m = 128118059715976 & w = 2
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
OpenSSL Project
---------------
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Http://www.openssl.org/