CVE-2021-3449

An OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from a client. If a TLSv1.2 renegotiation ClientHello omits the signature_algorithms extension (where it was present in the initial ClientHello), but includes a signature_algorithms_cert extension then a NULL pointer dereference will result, leading to a crash and a denial of service attack. A server is only vulnerable if it has TLSv1.2 and renegotiation enabled (which is the default configuration). OpenSSL TLS clients are not impacted by this issue. All OpenSSL 1.1.1 versions are affected by this issue. Users of these versions should upgrade to OpenSSL 1.1.1k. OpenSSL 1.0.2 is not impacted by this issue. Fixed in OpenSSL 1.1.1k (Affected 1.1.1-1.1.1j).
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5.9 MEDIUM
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
opensslCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 93%
VendorProductVersion
opensslopenssl
1.1.1 ≤
𝑥
< 1.1.1k
debiandebian_linux
9.0
debiandebian_linux
10.0
freebsdfreebsd
12.2
freebsdfreebsd
12.2:p1
freebsdfreebsd
12.2:p2
netappactive_iq_unified_manager
-
netappcloud_volumes_ontap_mediator
-
netappe-series_performance_analyzer
-
netapponcommand_insight
-
netapponcommand_workflow_automation
-
netappontap_select_deploy_administration_utility
-
netappsantricity_smi-s_provider
-
netappsnapcenter
-
netappstoragegrid
-
tenablelog_correlation_engine
𝑥
< 6.0.9
tenablenessus
𝑥
≤ 8.13.1
tenablenessus_network_monitor
5.11.0
tenablenessus_network_monitor
5.11.1
tenablenessus_network_monitor
5.12.0
tenablenessus_network_monitor
5.12.1
tenablenessus_network_monitor
5.13.0
tenabletenable.sc
5.13.0 ≤
𝑥
≤ 5.17.0
mcafeeweb_gateway
8.2.19
mcafeeweb_gateway
9.2.10
mcafeeweb_gateway
10.1.1
mcafeeweb_gateway_cloud_service
8.2.19
mcafeeweb_gateway_cloud_service
9.2.10
mcafeeweb_gateway_cloud_service
10.1.1
checkpointquantum_security_management_firmware
r80.40
checkpointmulti-domain_management_firmware
r80.40
checkpointquantum_security_gateway_firmware
r80.40
oraclecommunications_communications_policy_management
12.6.0.0.0
oracleenterprise_manager_for_storage_management
13.4.0.0
oracleessbase
21.2
oraclegraalvm
19.3.5
oraclegraalvm
20.3.1.2
oraclegraalvm
21.0.0.2
oraclejd_edwards_enterpriseone_tools
𝑥
< 9.2.6.0
oraclemysql_connectors
𝑥
≤ 8.0.23
oraclemysql_server
𝑥
≤ 5.7.33
oraclemysql_server
8.0.15 ≤
𝑥
≤ 8.0.23
oraclemysql_workbench
𝑥
≤ 8.0.23
oraclepeoplesoft_enterprise_peopletools
8.57
oraclepeoplesoft_enterprise_peopletools
8.58
oraclepeoplesoft_enterprise_peopletools
8.59
oracleprimavera_unifier
17.7 ≤
𝑥
≤ 17.12
oracleprimavera_unifier
19.12
oracleprimavera_unifier
20.12
oracleprimavera_unifier
21.12
oraclesecure_backup
𝑥
< 18.1.0.1.0
oraclesecure_global_desktop
5.6
oraclezfs_storage_appliance_kit
8.8
sonicwallsma100_firmware
10.2.0.0 ≤
𝑥
< 10.2.1.0-17sv
sonicwallcapture_client
3.5
sonicwallsonicos
7.0.1.0
siemensruggedcom_rcm1224_firmware
6.2 ≤
siemensscalance_lpe9403_firmware
*
siemensscalance_m-800_firmware
6.2 ≤
siemensscalance_s602_firmware
4.1 ≤
siemensscalance_s612_firmware
4.1 ≤
siemensscalance_s615_firmware
6.2 ≤
siemensscalance_s623_firmware
4.1 ≤
siemensscalance_s627-2m_firmware
4.1 ≤
siemensscalance_sc-600_firmware
2.0 ≤
siemensscalance_w700_firmware
6.5 ≤
siemensscalance_w1700_firmware
2.0 ≤
siemensscalance_xb-200_firmware
𝑥
< 4.3
siemensscalance_xc-200_firmware
𝑥
< 4.3
siemensscalance_xf-200ba_firmware
𝑥
< 4.3
siemensscalance_xm-400_firmware
𝑥
< 6.4
siemensscalance_xp-200_firmware
𝑥
< 4.3
siemensscalance_xr-300wg_firmware
𝑥
< 4.3
siemensscalance_xr524-8c_firmware
𝑥
< 6.4
siemensscalance_xr526-8c_firmware
𝑥
< 6.4
siemensscalance_xr528-6m_firmware
𝑥
< 6.4
siemensscalance_xr552-12_firmware
𝑥
< 6.4
siemenssimatic_cloud_connect_7_firmware
1.1 ≤
siemenssimatic_cloud_connect_7_firmware
-
siemenssimatic_cp_1242-7_gprs_v2_firmware
3.1 ≤
siemenssimatic_cp_1242-7_gprs_v2_firmware
-
siemenssimatic_hmi_basic_panels_2nd_generation_firmware
*
siemenssimatic_hmi_comfort_outdoor_panels_firmware
*
siemenssimatic_hmi_ktp_mobile_panels_firmware
*
siemenssimatic_mv500_firmware
*
siemenssimatic_net_cp_1243-1_firmware
3.1 ≤
siemenssimatic_net_cp1243-7_lte_eu_firmware
3.1 ≤
siemenssimatic_net_cp1243-7_lte_us_firmware
3.1 ≤
siemenssimatic_net_cp_1243-8_irc_firmware
3.1 ≤
siemenssimatic_net_cp_1542sp-1_irc_firmware
2.1 ≤
siemenssimatic_net_cp_1543-1_firmware
2.2 ≤
𝑥
< 3.0
siemenssimatic_net_cp_1543sp-1_firmware
2.1 ≤
siemenssimatic_net_cp_1545-1_firmware
1.0 ≤
siemenssimatic_pcs_7_telecontrol_firmware
*
siemenssimatic_pcs_neo_firmware
*
siemenssimatic_pdm_firmware
9.1.0.7 ≤
siemenssimatic_process_historian_opc_ua_server_firmware
2019 ≤
siemenssimatic_rf166c_firmware
*
siemenssimatic_rf185c_firmware
*
siemenssimatic_rf186c_firmware
*
siemenssimatic_rf186ci_firmware
*
siemenssimatic_rf188c_firmware
*
siemenssimatic_rf188ci_firmware
*
siemenssimatic_rf360r_firmware
*
siemenssimatic_s7-1200_cpu_1211c_firmware
*
siemenssimatic_s7-1200_cpu_1212c_firmware
*
siemenssimatic_s7-1200_cpu_1212fc_firmware
*
siemenssimatic_s7-1200_cpu_1214_fc_firmware
*
siemenssimatic_s7-1200_cpu_1214c_firmware
*
siemenssimatic_s7-1200_cpu_1214_fc_firmware
*
siemenssimatic_s7-1200_cpu_1215_fc_firmware
*
siemenssimatic_s7-1200_cpu_1215c_firmware
*
siemenssimatic_s7-1200_cpu_1217c_firmware
*
siemenssimatic_s7-1500_cpu_1518-4_pn\/dp_mfp_firmware
*
siemenssinamics_connect_300_firmware
*
siemenstim_1531_irc_firmware
2.0 ≤
𝑥
< 2.2
siemenssimatic_logon
1.6.0.2 ≤
siemenssimatic_logon
1.5:sp3_update_1
siemenssimatic_wincc_runtime_advanced
*
siemenssimatic_wincc_telecontrol
-
siemenssinec_nms
1.0
siemenssinec_nms
1.0:sp1
siemenssinec_pni
-
siemenssinema_server
14.0
siemenssinema_server
14.0:sp1
siemenssinema_server
14.0:sp2
siemenssinema_server
14.0:sp2_update1
siemenssinema_server
14.0:sp2_update2
siemenssinumerik_opc_ua_server
*
siemenstia_administrator
*
siemenssinec_infrastructure_network_services
𝑥
< 1.0.1.1
nodejsnode.js
10.0.0 ≤
𝑥
≤ 10.12.0
nodejsnode.js
10.13.0 ≤
𝑥
≤ 10.24.0
nodejsnode.js
12.0.0 ≤
𝑥
≤ 12.12.0
nodejsnode.js
12.13.0 ≤
𝑥
< 12.22.1
nodejsnode.js
14.0.0 ≤
𝑥
≤ 14.14.0
nodejsnode.js
14.15.0 ≤
𝑥
< 14.16.1
nodejsnode.js
15.0.0 ≤
𝑥
< 15.14.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
openssl
bullseye
1.1.1w-0+deb11u1
fixed
stretch
not-affected
bullseye (security)
1.1.1w-0+deb11u2
fixed
bookworm
3.0.14-1~deb12u1
fixed
bookworm (security)
3.0.14-1~deb12u2
fixed
sid
3.3.2-2
fixed
trixie
3.3.2-2
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
edk2
noble
not-affected
mantic
not-affected
lunar
not-affected
kinetic
not-affected
jammy
not-affected
impish
not-affected
hirsute
not-affected
groovy
not-affected
focal
not-affected
bionic
not-affected
xenial
not-affected
trusty
dne
nodejs
noble
not-affected
mantic
not-affected
lunar
not-affected
kinetic
not-affected
jammy
not-affected
impish
not-affected
hirsute
not-affected
groovy
not-affected
focal
not-affected
bionic
not-affected
xenial
not-affected
trusty
not-affected
openssl
noble
Fixed 1.1.1j-1ubuntu3
released
mantic
Fixed 1.1.1j-1ubuntu3
released
lunar
Fixed 1.1.1j-1ubuntu3
released
kinetic
Fixed 1.1.1j-1ubuntu3
released
jammy
Fixed 1.1.1j-1ubuntu3
released
impish
Fixed 1.1.1j-1ubuntu3
released
hirsute
Fixed 1.1.1j-1ubuntu3
released
groovy
Fixed 1.1.1f-1ubuntu4.3
released
focal
Fixed 1.1.1f-1ubuntu2.3
released
bionic
Fixed 1.1.1-1ubuntu2.1~18.04.9
released
xenial
not-affected
trusty
not-affected
openssl1.0
noble
dne
mantic
dne
lunar
dne
kinetic
dne
jammy
dne
impish
dne
hirsute
dne
groovy
dne
focal
dne
bionic
not-affected
xenial
dne
trusty
dne
postgresql-10
noble
dne
mantic
dne
lunar
dne
kinetic
dne
jammy
dne
impish
dne
hirsute
dne
focal
dne
bionic
Fixed 10.18-0ubuntu0.18.04.1
released
xenial
dne
trusty
dne
postgresql-12
noble
dne
mantic
dne
lunar
dne
kinetic
dne
jammy
dne
impish
dne
hirsute
dne
focal
Fixed 12.8-0ubuntu0.20.04.1
released
bionic
dne
xenial
dne
trusty
dne
postgresql-13
noble
dne
mantic
dne
lunar
dne
kinetic
dne
jammy
dne
impish
Fixed 13.4-1
released
hirsute
Fixed 13.4-0ubuntu0.21.04.1
released
focal
dne
bionic
dne
xenial
dne
trusty
dne
postgresql-9.1
noble
dne
mantic
dne
lunar
dne
kinetic
dne
jammy
dne
impish
dne
hirsute
dne
focal
dne
bionic
dne
xenial
dne
trusty
dne
postgresql-9.3
noble
dne
mantic
dne
lunar
dne
kinetic
dne
jammy
dne
impish
dne
hirsute
dne
focal
dne
bionic
dne
xenial
dne
trusty
deferred
postgresql-9.5
noble
dne
mantic
dne
lunar
dne
kinetic
dne
jammy
dne
impish
dne
hirsute
dne
focal
dne
bionic
dne
xenial
not-affected
trusty
dne
References