FreeBSD : socat -- diffie hellman parameter was not prime (a52a7172-c92e-11e5-96d6-14dae9d210b8)

High Nessus Plugin ID 88513


The remote FreeBSD host is missing a security-related update.


socat reports :

In the OpenSSL address implementation the hard-coded 1024 bit DH p parameter was not prime. The effective cryptographic strength of a key exchange using these parameters was weaker than the one one could get by using a prime p. Moreover, since there is no indication of how these parameters were chosen, the existence of a trapdoor that makes possible for an eavesdropper to recover the shared secret from a key exchange that uses them cannot be ruled out.


Update the affected package.

See Also

Plugin Details

Severity: High

ID: 88513

File Name: freebsd_pkg_a52a7172c92e11e596d614dae9d210b8.nasl

Version: $Revision: 2.1 $

Type: local

Published: 2016/02/02

Modified: 2016/02/02

Dependencies: 12634

Risk Information

Risk Factor: High

Vulnerability Information

CPE: p-cpe:/a:freebsd:freebsd:socat, cpe:/o:freebsd:freebsd

Required KB Items: Host/local_checks_enabled, Host/FreeBSD/release, Host/FreeBSD/pkg_info

Patch Publication Date: 2016/02/01

Vulnerability Publication Date: 2016/02/01