CVE-2017-3731

high
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

If an SSL/TLS server or client is running on a 32-bit host, and a specific cipher is being used, then a truncated packet can cause that server or client to perform an out-of-bounds read, usually resulting in a crash. For OpenSSL 1.1.0, the crash can be triggered when using CHACHA20/POLY1305; users should upgrade to 1.1.0d. For Openssl 1.0.2, the crash can be triggered when using RC4-MD5; users who have not disabled that algorithm should update to 1.0.2k.

References

http://rhn.redhat.com/errata/RHSA-2017-0286.html

http://securityadvisories.paloaltonetworks.com/Home/Detail/82

http://www.debian.org/security/2017/dsa-3773

http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html

http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html

http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html

http://www.securityfocus.com/bid/95813

http://www.securitytracker.com/id/1037717

https://access.redhat.com/errata/RHSA-2018:2185

https://access.redhat.com/errata/RHSA-2018:2186

https://access.redhat.com/errata/RHSA-2018:2187

https://github.com/openssl/openssl/commit/00d965474b22b54e4275232bc71ee0c699c5cd21

https://security.FreeBSD.org/advisories/FreeBSD-SA-17:02.openssl.asc

https://security.gentoo.org/glsa/201702-07

https://security.netapp.com/advisory/ntap-20171019-0002/

https://source.android.com/security/bulletin/pixel/2017-11-01

https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03838en_us

https://www.openssl.org/news/secadv/20170126.txt

https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html

https://www.tenable.com/security/tns-2017-04

Details

Source: MITRE

Published: 2017-05-04

Updated: 2019-04-23

Type: CWE-125

Risk Information

CVSS v2

Base Score: 5

Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Impact Score: 2.9

Exploitability Score: 10

Severity: MEDIUM

CVSS v3

Base Score: 7.5

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Impact Score: 3.6

Exploitability Score: 3.9

Severity: HIGH

Tenable Plugins

View all (52 total)

IDNameProductFamilySeverity
124059Oracle Access Manager Multiple Vulnerabilities (Jan 2018 CPU)NessusMisc.
critical
119996SUSE SLES12 Security Update : nodejs4 (SUSE-SU-2017:0855-1)NessusSuSE Local Security Checks
medium
119992SUSE SLES12 Security Update : nodejs6 (SUSE-SU-2017:0431-1)NessusSuSE Local Security Checks
medium
111147RHEL 6 : Red Hat JBoss Core Services Apache HTTP Server 2.4.29 RHEL 6 (RHSA-2018:2186)NessusRed Hat Local Security Checks
critical
111146RHEL 7 : Red Hat JBoss Core Services Apache HTTP Server 2.4.29 RHEL 7 (RHSA-2018:2185)NessusRed Hat Local Security Checks
critical
107230AIX OpenSSL Advisory : openssl_advisory23.ascNessusAIX Local Security Checks
high
106863openSUSE Security Update : openssl-steam (openSUSE-2018-168)NessusSuSE Local Security Checks
critical
106093SUSE SLES12 Security Update : openssl (SUSE-SU-2018:0112-1)NessusSuSE Local Security Checks
critical
104234openSUSE Security Update : mysql-community-server (openSUSE-2017-1196)NessusSuSE Local Security Checks
high
102698ESXi 6.0 < Build 5485776 Multiple Vulnerabilities (VMSA-2017-0015) (remote check)NessusMisc.
high
102699Juniper Junos Multiple OpenSSL Vulnerabilities (JSA10775)NessusJunos Local Security Checks
high
101979MySQL 5.7.x < 5.7.19 Multiple Vulnerabilities (RPM Check) (July 2017 CPU) (October 2017 CPU)NessusDatabases
medium
101978MySQL 5.6.x < 5.6.37 Multiple Vulnerabilities (RPM Check) (July 2017 CPU) (October 2017 CPU)NessusDatabases
medium
101821MySQL 5.7.x < 5.7.19 Multiple Vulnerabilities (Jul 2017 CPU) (Oct 2017 CPU) (Jul 2019 CPU)NessusDatabases
medium
101820MySQL 5.6.x < 5.6.37 Multiple Vulnerabilities (July 2017 CPU) (October 2017 CPU)NessusDatabases
medium
101424Virtuozzo 6 : openssl / openssl-devel / openssl-perl / etc (VZLSA-2017-0286)NessusVirtuozzo Local Security Checks
high
101046Tenable SecurityCenter OpenSSL 1.0.2 < 1.0.2k Multiple Vulnerabilities (TNS-2017-04)NessusMisc.
medium
100419Palo Alto Networks PAN-OS 6.1.x < 6.1.17 / 7.0.x < 7.0.15 / 7.1.x < 7.1.10 / 8.0.x < 8.0.2 Multiple VulnerabilitiesNessusPalo Alto Local Security Checks
medium
99930Oracle Secure Global Desktop Multiple Vulnerabilities (April 2017 CPU) (SWEET32)NessusMisc.
critical
99875EulerOS 2.0 SP2 : openssl (EulerOS-SA-2017-1030)NessusHuawei Local Security Checks
high
99874EulerOS 2.0 SP1 : openssl (EulerOS-SA-2017-1029)NessusHuawei Local Security Checks
high
99593MySQL Enterprise Monitor 3.1.x < 3.1.7.8023 / 3.2.x < 3.2.7.1204 / 3.3.x < 3.3.3.1199 Multiple Vulnerabilities (April 2017 CPU)NessusCGI abuses
critical
99516MySQL 5.7.x < 5.7.18 Multiple Vulnerabilities (April 2017 CPU) (July 2017 CPU)NessusDatabases
medium
99515MySQL 5.6.x < 5.6.36 Multiple Vulnerabilities (April 2017 CPU) (July 2017 CPU) (Riddle)NessusDatabases
medium
99513MySQL 5.7.x < 5.7.18 Multiple Vulnerabilities (April 2017 CPU) (July 2017 CPU)NessusDatabases
medium
99512MySQL 5.6.x < 5.6.36 Multiple Vulnerabilities (April 2017 CPU) (July 2017 CPU) (Riddle)NessusDatabases
medium
99212openSUSE Security Update : nodejs4 (openSUSE-2017-442)NessusSuSE Local Security Checks
high
97726Tenable SecurityCenter 5.x < 5.4.3 Multiple Vulnerabilities (TNS-2017-04) (httpoxy)NessusMisc.
medium
97555Amazon Linux AMI : openssl (ALAS-2017-803)NessusAmazon Linux Local Security Checks
high
97361F5 Networks BIG-IP : OpenSSL vulnerability (K37526132)NessusF5 Networks Local Security Checks
high
97316OracleVM 3.3 / 3.4 : openssl (OVMSA-2017-0042)NessusOracleVM Local Security Checks
high
97305CentOS 6 / 7 : openssl (CESA-2017:0286)NessusCentOS Local Security Checks
high
97295Scientific Linux Security Update : openssl on SL6.x, SL7.x i386/x86_64 (20170220)NessusScientific Linux Local Security Checks
high
97294RHEL 6 / 7 : openssl (RHSA-2017:0286)NessusRed Hat Local Security Checks
high
97293Oracle Linux 6 / 7 : openssl (ELSA-2017-0286)NessusOracle Linux Local Security Checks
high
97292openSUSE Security Update : nodejs (openSUSE-2017-284)NessusSuSE Local Security Checks
high
97276openSUSE Security Update : openssl (openSUSE-2017-256)NessusSuSE Local Security Checks
high
97275openSUSE Security Update : openssl (openSUSE-2017-255)NessusSuSE Local Security Checks
critical
97188SUSE SLED12 / SLES12 Security Update : openssl (SUSE-SU-2017:0461-1)NessusSuSE Local Security Checks
critical
97183GLSA-201702-07 : OpenSSL: Multiple vulnerabilitiesNessusGentoo Local Security Checks
high
97180Fedora 24 : 1:openssl (2017-e853b4144f)NessusFedora Local Security Checks
high
97129SUSE SLED12 / SLES12 Security Update : openssl (SUSE-SU-2017:0441-1)NessusSuSE Local Security Checks
high
97102Slackware 14.2 / current : openssl (SSA:2017-041-02)NessusSlackware Local Security Checks
high
97054Fedora 25 : 1:openssl (2017-3451dbec48)NessusFedora Local Security Checks
high
9934OpenSSL 1.0.2 < 1.0.2k Multiple VulnerabilitiesNessus Network MonitorWeb Servers
high
9933OpenSSL 1.1.0 < 1.1.0d Multiple VulnerabilitiesNessus Network MonitorWeb Servers
high
96931Debian DLA-814-1 : openssl security updateNessusDebian Local Security Checks
high
96927Ubuntu 12.04 LTS / 14.04 LTS / 16.04 LTS / 16.10 : openssl vulnerabilities (USN-3181-1)NessusUbuntu Local Security Checks
critical
96874OpenSSL 1.1.0 < 1.1.0d Multiple VulnerabilitiesNessusWeb Servers
medium
96873OpenSSL 1.0.2 < 1.0.2k Multiple VulnerabilitiesNessusWeb Servers
medium
96842Debian DSA-3773-1 : openssl - security updateNessusDebian Local Security Checks
high
96821FreeBSD : OpenSSL -- multiple vulnerabilities (d455708a-e3d3-11e6-9940-b499baebfeaf)NessusFreeBSD Local Security Checks
high