FreeBSD-SA-17:12.openssl

Status
Not open for further replies.

admin

Administrator
Staff member
Administrator

Thanks: 210
Messages: 991

#1
Invoking SSL_read()/SSL_write() while in an error state causes data to be passed without being decrypted/encrypted directly from the SSL/TLS record layer.

In order to exploit this issue an application bug would have to be present that resulted in a call to SSL_read()/SSL_write() being issued after having already received a fatal error. [CVE-2017-3737]

There is an overflow bug in the x86_64 Montgomery multiplication procedure used in exponentiation with 1024-bit moduli. This only affects processors that support the AVX2 but not ADX extensions like Intel Haswell (4th generation). [CVE-2017-3738] This bug only affects FreeBSD 11.x.
Continue reading...
 
Last edited by a moderator:
Status
Not open for further replies.
Top