CVE-2019-1563

In situations where an attacker receives automated notification of the success or failure of a decryption attempt an attacker, after sending a very large number of messages to be decrypted, can recover a CMS/PKCS7 transported encryption key or decrypt any RSA encrypted message that was encrypted with the public RSA key, using a Bleichenbacher padding oracle attack. Applications are not affected if they use a certificate together with the private RSA key to the CMS_decrypt or PKCS7_decrypt functions to select the correct recipient info to decrypt. Fixed in OpenSSL 1.1.1d (Affected 1.1.1-1.1.1c). Fixed in OpenSSL 1.1.0l (Affected 1.1.0-1.1.0k). Fixed in OpenSSL 1.0.2t (Affected 1.0.2-1.0.2s).
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
3.7 LOW
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
opensslCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 79%
VendorProductVersion
opensslopenssl
1.0.2 ≤
𝑥
≤ 1.0.2s
opensslopenssl
1.1.0 ≤
𝑥
≤ 1.1.0k
opensslopenssl
1.1.1 ≤
𝑥
≤ 1.1.1c
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
openssl
bullseye
1.1.1w-0+deb11u1
fixed
bullseye (security)
1.1.1w-0+deb11u2
fixed
bookworm
3.0.14-1~deb12u1
fixed
bookworm (security)
3.0.14-1~deb12u2
fixed
sid
3.3.2-2
fixed
trixie
3.3.2-2
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
edk2
noble
not-affected
mantic
not-affected
lunar
not-affected
kinetic
not-affected
jammy
not-affected
impish
not-affected
hirsute
not-affected
groovy
not-affected
focal
not-affected
eoan
ignored
disco
ignored
bionic
needed
xenial
needed
trusty
dne
nodejs
noble
not-affected
mantic
not-affected
lunar
not-affected
kinetic
not-affected
jammy
needed
impish
not-affected
hirsute
not-affected
groovy
not-affected
focal
not-affected
eoan
not-affected
disco
not-affected
bionic
not-affected
xenial
not-affected
trusty
not-affected
openssl
noble
Fixed 1.1.1d-2ubuntu1
released
mantic
Fixed 1.1.1d-2ubuntu1
released
lunar
Fixed 1.1.1d-2ubuntu1
released
kinetic
Fixed 1.1.1d-2ubuntu1
released
jammy
Fixed 1.1.1d-2ubuntu1
released
impish
Fixed 1.1.1d-2ubuntu1
released
hirsute
Fixed 1.1.1d-2ubuntu1
released
groovy
Fixed 1.1.1d-2ubuntu1
released
focal
Fixed 1.1.1d-2ubuntu1
released
eoan
Fixed 1.1.1c-1ubuntu4.1
released
disco
ignored
bionic
Fixed 1.1.1-1ubuntu2.1~18.04.6
released
xenial
Fixed 1.0.2g-1ubuntu4.16
released
trusty
Fixed 1.0.1f-1ubuntu2.27+esm1
released
openssl1.0
noble
dne
mantic
dne
lunar
dne
kinetic
dne
jammy
dne
impish
dne
hirsute
dne
groovy
dne
focal
dne
eoan
dne
disco
dne
bionic
Fixed 1.0.2n-1ubuntu5.4
released
xenial
dne
trusty
dne
References