Ubuntu 12.04 LTS / 14.04 LTS / 15.04 / 15.10 : openssl vulnerabilities (USN-2830-1)

Ubuntu Security Notice (C) 2015-2016 Canonical, Inc. / NASL script (C) 2015-2016 Tenable Network Security, Inc.


Synopsis :

The remote Ubuntu host is missing a security-related patch.

Description :

Guy Leaver discovered that OpenSSL incorrectly handled a
ServerKeyExchange for an anonymous DH ciphersuite with the value of p
set to 0. A remote attacker could possibly use this issue to cause
OpenSSL to crash, resulting in a denial of service. This issue only
applied to Ubuntu 15.10. (CVE-2015-1794)

Hanno Bock discovered that the OpenSSL Montgomery squaring procedure
algorithm may produce incorrect results when being used on x86_64. A
remote attacker could possibly use this issue to break encryption.
This issue only applied to Ubuntu 15.10. (CVE-2015-3193)

Loic Jonas Etienne discovered that OpenSSL incorrectly handled ASN.1
signatures with a missing PSS parameter. A remote attacker could
possibly use this issue to cause OpenSSL to crash, resulting in a
denial of service. (CVE-2015-3194)

Adam Langley discovered that OpenSSL incorrectly handled malformed
X509_ATTRIBUTE structures. A remote attacker could possibly use this
issue to cause OpenSSL to consume resources, resulting in a denial of
service. (CVE-2015-3195)

It was discovered that OpenSSL incorrectly handled PSK identity hints.
A remote attacker could possibly use this issue to cause OpenSSL to
crash, resulting in a denial of service. This issue only applied to
Ubuntu 12.04 LTS, Ubuntu 14.04 LTS and Ubuntu 15.04. (CVE-2015-3196).

Note that Tenable Network Security has extracted the preceding
description block directly from the Ubuntu security advisory. Tenable
has attempted to automatically clean and format it as much as possible
without introducing additional issues.

Solution :

Update the affected libssl1.0.0 package.

Risk factor :

Medium / CVSS Base Score : 5.0
(CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P)
CVSS Temporal Score : 3.7
(CVSS2#E:U/RL:OF/RC:C)
Public Exploit Available : false

Family: Ubuntu Local Security Checks

Nessus Plugin ID: 87236 ()

Bugtraq ID:

CVE ID: CVE-2015-1794
CVE-2015-3193
CVE-2015-3194
CVE-2015-3195
CVE-2015-3196

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now