CVE-2016-2183

The DES and Triple DES ciphers, as used in the TLS, SSH, and IPSec protocols and other protocols and products, have a birthday bound of approximately four billion blocks, which makes it easier for remote attackers to obtain cleartext data via a birthday attack against a long-duration encrypted session, as demonstrated by an HTTPS session using Triple DES in CBC mode, aka a "Sweet32" attack.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 97%
Affected Products (NVD)
VendorProductVersion
redhatjboss_enterprise_application_platform
6.0.0
redhatjboss_enterprise_web_server
1.0.0
redhatjboss_enterprise_web_server
2.0.0
redhatjboss_web_server
3.0
redhatenterprise_linux
5.0
redhatenterprise_linux
6.0
redhatenterprise_linux
7.0
pythonpython
2.7.0 ≤
𝑥
< 2.7.13
pythonpython
3.4.0 ≤
𝑥
< 3.4.7
pythonpython
3.5.0 ≤
𝑥
< 3.5.3
ciscocontent_security_management_appliance
9.6.6-068
ciscocontent_security_management_appliance
9.7.0-006
opensslopenssl
1.0.1a:a
opensslopenssl
1.0.1b:b
opensslopenssl
1.0.1c:c
opensslopenssl
1.0.1d:d
opensslopenssl
1.0.1e:e
opensslopenssl
1.0.1f:f
opensslopenssl
1.0.1g:g
opensslopenssl
1.0.1h:h
opensslopenssl
1.0.1i:i
opensslopenssl
1.0.1j:j
opensslopenssl
1.0.1k:k
opensslopenssl
1.0.1l:l
opensslopenssl
1.0.1m:m
opensslopenssl
1.0.1n:n
opensslopenssl
1.0.1o:o
opensslopenssl
1.0.1p:p
opensslopenssl
1.0.1q:q
opensslopenssl
1.0.1r:r
opensslopenssl
1.0.1t:t
opensslopenssl
1.0.2a:a
opensslopenssl
1.0.2b:b
opensslopenssl
1.0.2c:c
opensslopenssl
1.0.2d:d
opensslopenssl
1.0.2e:e
opensslopenssl
1.0.2f:f
opensslopenssl
1.0.2h:h
oracledatabase
11.2.0.4
oracledatabase
12.1.0.2
nodejsnode.js
0.10.0 ≤
𝑥
< 0.10.47
nodejsnode.js
0.12.0 ≤
𝑥
< 0.12.16
nodejsnode.js
4.0.0 ≤
𝑥
< 4.1.2
nodejsnode.js
4.2.0 ≤
𝑥
< 4.6.0
nodejsnode.js
6.0.0 ≤
𝑥
< 6.7.0
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
gnutls26
artful
dne
bionic
dne
cosmic
dne
disco
dne
precise
not-affected
trusty
not-affected
xenial
dne
yakkety
dne
zesty
dne
gnutls28
artful
not-affected
bionic
not-affected
cosmic
not-affected
disco
not-affected
precise
not-affected
trusty
dne
xenial
not-affected
yakkety
not-affected
zesty
not-affected
nss
artful
Fixed 2:3.28.4-0ubuntu1
released
bionic
Fixed 2:3.28.4-0ubuntu1
released
cosmic
Fixed 2:3.28.4-0ubuntu1
released
disco
Fixed 2:3.28.4-0ubuntu1
released
precise
ignored
trusty
Fixed 2:3.28.4-0ubuntu0.14.04.1
released
xenial
Fixed 2:3.28.4-0ubuntu0.16.04.1
released
yakkety
Fixed 2:3.28.4-0ubuntu0.16.10.1
released
zesty
Fixed 2:3.28.4-0ubuntu0.17.04.1
released
openjdk-6
artful
dne
bionic
dne
cosmic
dne
disco
dne
precise
Fixed 6b41-1.13.13-0ubuntu0.12.04.1
released
trusty
Fixed 6b41-1.13.13-0ubuntu0.14.04.1
released
xenial
dne
yakkety
dne
zesty
dne
openjdk-7
artful
dne
bionic
dne
cosmic
dne
disco
dne
precise
Fixed 7u121-2.6.8-1ubuntu0.12.04.3
released
trusty
Fixed 7u121-2.6.8-1ubuntu0.14.04.3
released
xenial
dne
yakkety
dne
zesty
dne
openjdk-8
artful
not-affected
bionic
not-affected
cosmic
not-affected
disco
not-affected
precise
dne
trusty
dne
xenial
Fixed 8u121-b13-0ubuntu1.16.04.2
released
yakkety
Fixed 8u121-b13-0ubuntu1.16.10.2
released
zesty
not-affected
openssl
artful
Fixed 1.0.2g-1ubuntu9
released
bionic
Fixed 1.0.2g-1ubuntu9
released
cosmic
Fixed 1.0.2g-1ubuntu9
released
disco
Fixed 1.0.2g-1ubuntu9
released
precise
Fixed 1.0.1-4ubuntu5.37
released
trusty
Fixed 1.0.1f-1ubuntu2.20
released
xenial
Fixed 1.0.2g-1ubuntu4.4
released
yakkety
Fixed 1.0.2g-1ubuntu9
released
zesty
Fixed 1.0.2g-1ubuntu9
released
openssl098
artful
dne
bionic
dne
cosmic
dne
disco
dne
precise
ignored
trusty
dne
xenial
dne
yakkety
dne
zesty
dne
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
java-1_7_0-openjdk
suse enterprise server 12
1.7.0.131-39.1
fixed
java-1_7_0-openjdk-demo
suse enterprise server 12
1.7.0.131-39.1
fixed
java-1_7_0-openjdk-devel
suse enterprise server 12
1.7.0.131-39.1
fixed
java-1_7_0-openjdk-headless
suse enterprise server 12
1.7.0.131-39.1
fixed
java-1_8_0-openjdk
suse enterprise sap 15
1.8.0.161-1.52
fixed
suse enterprise sap 15 SP1
1.8.0.201-3.16.1
fixed
suse enterprise sap 15 SP2
1.8.0.242-3.30.2
fixed
suse enterprise sap 15 SP3
1.8.0.282-3.48.1
fixed
suse enterprise sap 15 SP4
1.8.0.322-3.64.2
fixed
suse enterprise sap 15 SP5
1.8.0.362-150000.3.76.1
fixed
suse enterprise sap 15 SP6
1.8.0.412-150000.3.91.1
fixed
suse enterprise sap 15 SP7
1.8.0.442-150000.3.103.2
fixed
suse enterprise server 15
1.8.0.161-1.52
fixed
suse enterprise server 15 SP1
1.8.0.201-3.16.1
fixed
suse enterprise server 15 SP2
1.8.0.242-3.30.2
fixed
suse enterprise server 15 SP3
1.8.0.282-3.48.1
fixed
suse enterprise server 15 SP4
1.8.0.322-3.64.2
fixed
suse enterprise server 15 SP5
1.8.0.362-150000.3.76.1
fixed
suse enterprise server 15 SP6
1.8.0.412-150000.3.91.1
fixed
suse enterprise server 15 SP7
1.8.0.442-150000.3.103.2
fixed
java-1_8_0-openjdk-demo
suse enterprise sap 15
1.8.0.161-1.52
fixed
suse enterprise sap 15 SP1
1.8.0.201-3.16.1
fixed
suse enterprise sap 15 SP2
1.8.0.242-3.30.2
fixed
suse enterprise sap 15 SP3
1.8.0.282-3.48.1
fixed
suse enterprise sap 15 SP4
1.8.0.322-3.64.2
fixed
suse enterprise sap 15 SP5
1.8.0.362-150000.3.76.1
fixed
suse enterprise sap 15 SP6
1.8.0.412-150000.3.91.1
fixed
suse enterprise sap 15 SP7
1.8.0.442-150000.3.103.2
fixed
suse enterprise server 15
1.8.0.161-1.52
fixed
suse enterprise server 15 SP1
1.8.0.201-3.16.1
fixed
suse enterprise server 15 SP2
1.8.0.242-3.30.2
fixed
suse enterprise server 15 SP3
1.8.0.282-3.48.1
fixed
suse enterprise server 15 SP4
1.8.0.322-3.64.2
fixed
suse enterprise server 15 SP5
1.8.0.362-150000.3.76.1
fixed
suse enterprise server 15 SP6
1.8.0.412-150000.3.91.1
fixed
suse enterprise server 15 SP7
1.8.0.442-150000.3.103.2
fixed
java-1_8_0-openjdk-devel
suse enterprise sap 15
1.8.0.161-1.52
fixed
suse enterprise sap 15 SP1
1.8.0.201-3.16.1
fixed
suse enterprise sap 15 SP2
1.8.0.242-3.30.2
fixed
suse enterprise sap 15 SP3
1.8.0.282-3.48.1
fixed
suse enterprise sap 15 SP4
1.8.0.322-3.64.2
fixed
suse enterprise sap 15 SP5
1.8.0.362-150000.3.76.1
fixed
suse enterprise sap 15 SP6
1.8.0.412-150000.3.91.1
fixed
suse enterprise sap 15 SP7
1.8.0.442-150000.3.103.2
fixed
suse enterprise server 15
1.8.0.161-1.52
fixed
suse enterprise server 15 SP1
1.8.0.201-3.16.1
fixed
suse enterprise server 15 SP2
1.8.0.242-3.30.2
fixed
suse enterprise server 15 SP3
1.8.0.282-3.48.1
fixed
suse enterprise server 15 SP4
1.8.0.322-3.64.2
fixed
suse enterprise server 15 SP5
1.8.0.362-150000.3.76.1
fixed
suse enterprise server 15 SP6
1.8.0.412-150000.3.91.1
fixed
suse enterprise server 15 SP7
1.8.0.442-150000.3.103.2
fixed
java-1_8_0-openjdk-headless
suse enterprise sap 15
1.8.0.161-1.52
fixed
suse enterprise sap 15 SP1
1.8.0.201-3.16.1
fixed
suse enterprise sap 15 SP2
1.8.0.242-3.30.2
fixed
suse enterprise sap 15 SP3
1.8.0.282-3.48.1
fixed
suse enterprise sap 15 SP4
1.8.0.322-3.64.2
fixed
suse enterprise sap 15 SP5
1.8.0.362-150000.3.76.1
fixed
suse enterprise sap 15 SP6
1.8.0.412-150000.3.91.1
fixed
suse enterprise sap 15 SP7
1.8.0.442-150000.3.103.2
fixed
suse enterprise server 15
1.8.0.161-1.52
fixed
suse enterprise server 15 SP1
1.8.0.201-3.16.1
fixed
suse enterprise server 15 SP2
1.8.0.242-3.30.2
fixed
suse enterprise server 15 SP3
1.8.0.282-3.48.1
fixed
suse enterprise server 15 SP4
1.8.0.322-3.64.2
fixed
suse enterprise server 15 SP5
1.8.0.362-150000.3.76.1
fixed
suse enterprise server 15 SP6
1.8.0.412-150000.3.91.1
fixed
suse enterprise server 15 SP7
1.8.0.442-150000.3.103.2
fixed
libopenssl-devel
suse enterprise desktop 15 SP6
3.1.4-150600.2.1
fixed
suse enterprise desktop 15 SP7
3.2.3-150700.1.1
fixed
suse enterprise sap 15 SP6
3.1.4-150600.2.1
fixed
suse enterprise sap 15 SP7
3.2.3-150700.1.1
fixed
suse enterprise server 15 SP6
3.1.4-150600.2.1
fixed
suse enterprise server 15 SP7
3.2.3-150700.1.1
fixed
libopenssl-fips-provider
suse enterprise desktop 15 SP6
3.1.4-150600.2.1
fixed
suse enterprise desktop 15 SP7
3.2.3-150700.1.1
fixed
suse enterprise sap 15 SP6
3.1.4-150600.2.1
fixed
suse enterprise sap 15 SP7
3.2.3-150700.1.1
fixed
suse enterprise server 15 SP6
3.1.4-150600.2.1
fixed
suse enterprise server 15 SP7
3.2.3-150700.1.1
fixed
libwsman-devel
suse enterprise sap 15
2.6.7-1.37
fixed
suse enterprise sap 15 SP1
2.6.7-3.3.1
fixed
suse enterprise sap 15 SP2
2.6.7-3.6.1
fixed
suse enterprise sap 15 SP3
2.6.7-3.9.1
fixed
suse enterprise sap 15 SP4
2.6.7-3.9.1
fixed
suse enterprise sap 15 SP7
2.6.7-150600.17.2
fixed
suse enterprise server 15
2.6.7-1.37
fixed
suse enterprise server 15 SP1
2.6.7-3.3.1
fixed
suse enterprise server 15 SP2
2.6.7-3.6.1
fixed
suse enterprise server 15 SP3
2.6.7-3.9.1
fixed
suse enterprise server 15 SP4
2.6.7-3.9.1
fixed
suse enterprise server 15 SP7
2.6.7-150600.17.2
fixed
libwsman3
suse enterprise sap 15
2.6.7-1.37
fixed
suse enterprise sap 15 SP1
2.6.7-3.3.1
fixed
suse enterprise sap 15 SP2
2.6.7-3.6.1
fixed
suse enterprise sap 15 SP3
2.6.7-3.9.1
fixed
suse enterprise sap 15 SP4
2.6.7-3.9.1
fixed
suse enterprise sap 15 SP7
2.6.7-150600.17.2
fixed
suse enterprise server 15
2.6.7-1.37
fixed
suse enterprise server 15 SP1
2.6.7-3.3.1
fixed
suse enterprise server 15 SP2
2.6.7-3.6.1
fixed
suse enterprise server 15 SP3
2.6.7-3.9.1
fixed
suse enterprise server 15 SP4
2.6.7-3.9.1
fixed
suse enterprise server 15 SP7
2.6.7-150600.17.2
fixed
nodejs4
suse enterprise sap 12
4.6.0-8.1
fixed
suse enterprise sap 12 SP3
4.6.0-8.1
fixed
suse enterprise sap 12 SP4
4.6.0-8.1
fixed
suse enterprise sap 12 SP5
4.6.0-8.1
fixed
suse enterprise server 12
4.6.0-8.1
fixed
suse enterprise server 12 SP3
4.6.0-8.1
fixed
suse enterprise server 12 SP4
4.6.0-8.1
fixed
suse enterprise server 12 SP5
4.6.0-8.1
fixed
nodejs4-devel
suse enterprise sap 12
4.6.0-8.1
fixed
suse enterprise sap 12 SP3
4.6.0-8.1
fixed
suse enterprise sap 12 SP4
4.6.0-8.1
fixed
suse enterprise sap 12 SP5
4.6.0-8.1
fixed
suse enterprise server 12
4.6.0-8.1
fixed
suse enterprise server 12 SP3
4.6.0-8.1
fixed
suse enterprise server 12 SP4
4.6.0-8.1
fixed
suse enterprise server 12 SP5
4.6.0-8.1
fixed
nodejs4-docs
suse enterprise sap 12
4.6.0-8.1
fixed
suse enterprise sap 12 SP3
4.6.0-8.1
fixed
suse enterprise sap 12 SP4
4.6.0-8.1
fixed
suse enterprise sap 12 SP5
4.6.0-8.1
fixed
suse enterprise server 12
4.6.0-8.1
fixed
suse enterprise server 12 SP3
4.6.0-8.1
fixed
suse enterprise server 12 SP4
4.6.0-8.1
fixed
suse enterprise server 12 SP5
4.6.0-8.1
fixed
npm4
suse enterprise sap 12
4.6.0-8.1
fixed
suse enterprise sap 12 SP3
4.6.0-8.1
fixed
suse enterprise sap 12 SP4
4.6.0-8.1
fixed
suse enterprise sap 12 SP5
4.6.0-8.1
fixed
suse enterprise server 12
4.6.0-8.1
fixed
suse enterprise server 12 SP3
4.6.0-8.1
fixed
suse enterprise server 12 SP4
4.6.0-8.1
fixed
suse enterprise server 12 SP5
4.6.0-8.1
fixed
openssl
suse enterprise desktop 15 SP6
3.1.4-150600.2.1
fixed
suse enterprise desktop 15 SP7
3.2.3-150700.1.1
fixed
suse enterprise sap 15 SP6
3.1.4-150600.2.1
fixed
suse enterprise sap 15 SP7
3.2.3-150700.1.1
fixed
suse enterprise server 15 SP6
3.1.4-150600.2.1
fixed
suse enterprise server 15 SP7
3.2.3-150700.1.1
fixed
openwsman-server
suse enterprise sap 15
2.6.7-1.37
fixed
suse enterprise sap 15 SP1
2.6.7-3.3.1
fixed
suse enterprise sap 15 SP2
2.6.7-3.6.1
fixed
suse enterprise sap 15 SP3
2.6.7-3.9.1
fixed
suse enterprise sap 15 SP4
2.6.7-3.9.1
fixed
suse enterprise sap 15 SP7
2.6.7-150600.17.2
fixed
suse enterprise server 15
2.6.7-1.37
fixed
suse enterprise server 15 SP1
2.6.7-3.3.1
fixed
suse enterprise server 15 SP2
2.6.7-3.6.1
fixed
suse enterprise server 15 SP3
2.6.7-3.9.1
fixed
suse enterprise server 15 SP4
2.6.7-3.9.1
fixed
suse enterprise server 15 SP7
2.6.7-150600.17.2
fixed
Red Hat logo
Red Hat Enterprise Linux Releases
Red Hat Product
Release
java-1.6.0-ibm
RHEL 6
1:1.6.0.16.41-1jpp.1.el6_8
fixed
java-1.6.0-ibm-demo
RHEL 6
1:1.6.0.16.41-1jpp.1.el6_8
fixed
java-1.6.0-ibm-devel
RHEL 6
1:1.6.0.16.41-1jpp.1.el6_8
fixed
java-1.6.0-ibm-javacomm
RHEL 6
1:1.6.0.16.41-1jpp.1.el6_8
fixed
java-1.6.0-ibm-jdbc
RHEL 6
1:1.6.0.16.41-1jpp.1.el6_8
fixed
java-1.6.0-ibm-plugin
RHEL 6
1:1.6.0.16.41-1jpp.1.el6_8
fixed
java-1.6.0-ibm-src
RHEL 6
1:1.6.0.16.41-1jpp.1.el6_8
fixed
java-1.7.1-ibm
RHEL 6
1:1.7.1.4.1-1jpp.1.el6_8
fixed
RHEL 7
1:1.7.1.4.1-1jpp.2.el7
fixed
java-1.7.1-ibm-demo
RHEL 6
1:1.7.1.4.1-1jpp.1.el6_8
fixed
RHEL 7
1:1.7.1.4.1-1jpp.2.el7
fixed
java-1.7.1-ibm-devel
RHEL 6
1:1.7.1.4.1-1jpp.1.el6_8
fixed
RHEL 7
1:1.7.1.4.1-1jpp.2.el7
fixed
java-1.7.1-ibm-jdbc
RHEL 6
1:1.7.1.4.1-1jpp.1.el6_8
fixed
RHEL 7
1:1.7.1.4.1-1jpp.2.el7
fixed
java-1.7.1-ibm-plugin
RHEL 6
1:1.7.1.4.1-1jpp.1.el6_8
fixed
RHEL 7
1:1.7.1.4.1-1jpp.2.el7
fixed
java-1.7.1-ibm-src
RHEL 6
1:1.7.1.4.1-1jpp.1.el6_8
fixed
RHEL 7
1:1.7.1.4.1-1jpp.2.el7
fixed
java-1.8.0-ibm
RHEL 6
1:1.8.0.4.1-1jpp.1.el6_8
fixed
RHEL 7
1:1.8.0.4.1-1jpp.2.el7
fixed
java-1.8.0-ibm-demo
RHEL 6
1:1.8.0.4.1-1jpp.1.el6_8
fixed
RHEL 7
1:1.8.0.4.1-1jpp.2.el7
fixed
java-1.8.0-ibm-devel
RHEL 6
1:1.8.0.4.1-1jpp.1.el6_8
fixed
RHEL 7
1:1.8.0.4.1-1jpp.2.el7
fixed
java-1.8.0-ibm-jdbc
RHEL 6
1:1.8.0.4.1-1jpp.1.el6_8
fixed
RHEL 7
1:1.8.0.4.1-1jpp.2.el7
fixed
java-1.8.0-ibm-plugin
RHEL 6
1:1.8.0.4.1-1jpp.1.el6_8
fixed
RHEL 7
1:1.8.0.4.1-1jpp.2.el7
fixed
java-1.8.0-ibm-src
RHEL 6
1:1.8.0.4.1-1jpp.1.el6_8
fixed
RHEL 7
1:1.8.0.4.1-1jpp.2.el7
fixed
openssl
RHEL 6
0:1.0.1e-48.el6_8.3
fixed
RHEL 7
1:1.0.1e-51.el7_2.7
fixed
openssl-devel
RHEL 6
0:1.0.1e-48.el6_8.3
fixed
RHEL 7
1:1.0.1e-51.el7_2.7
fixed
openssl-libs
RHEL 7
1:1.0.1e-51.el7_2.7
fixed
openssl-perl
RHEL 6
0:1.0.1e-48.el6_8.3
fixed
RHEL 7
1:1.0.1e-51.el7_2.7
fixed
openssl-static
RHEL 6
0:1.0.1e-48.el6_8.3
fixed
RHEL 7
1:1.0.1e-51.el7_2.7
fixed
python
RHEL 7
0:2.7.5-69.el7_5
fixed
python-debug
RHEL 7
0:2.7.5-69.el7_5
fixed
python-devel
RHEL 7
0:2.7.5-69.el7_5
fixed
python-libs
RHEL 7
0:2.7.5-69.el7_5
fixed
python-test
RHEL 7
0:2.7.5-69.el7_5
fixed
python-tools
RHEL 7
0:2.7.5-69.el7_5
fixed
tkinter
RHEL 7
0:2.7.5-69.el7_5
fixed
References