CVE-2012-0884
Published Mar 13, 2012
Last updated 7 years ago
Overview
- Description
- The implementation of Cryptographic Message Syntax (CMS) and PKCS #7 in OpenSSL before 0.9.8u and 1.x before 1.0.0h does not properly restrict certain oracle behavior, which makes it easier for context-dependent attackers to decrypt data via a Million Message Attack (MMA) adaptive chosen ciphertext attack.
- Source
- secalert@redhat.com
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- CWE-310
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:openssl:openssl:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "696376CD-ED8A-4086-AD60-C0D5F6999F80", "versionEndIncluding": "0.9.8t" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.0b:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FE4F6317-358E-4BFA-B826-DE1FEA965808" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.1b:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E9C775A5-0E14-4BB4-8664-EFAF8E3B70FF" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.1c:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "14D983EC-61B0-4FD9-89B5-9878E4CE4405" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.2b:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B5D7BE3C-8CA2-4FB2-B4AE-B201D88C2A9D" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BC4C5F05-BC0B-478D-9A6F-7C804777BA41" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.3a:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "27F417A1-5D97-4BC4-8B97-5AC40236DA21" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8847BD34-BDE6-4AE9-96D9-75B9CF93A6A8" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4EDB5A09-BE86-4352-9799-A875649EDB7D" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.5a:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F03FA9C0-24C7-46AC-92EC-7834BC34C79B" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B5E4742C-A983-4F00-B24F-AB280C0E876D" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.6a:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8A0628DF-3A4C-4078-B615-22260671EABF" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.6b:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "962FCB86-15AD-4399-8B7D-EC1DEA919C59" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.6c:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0FCA45CE-4127-47AD-BBA8-8A6DD83AE1C7" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.6d:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7CA1CA40-7DB5-4DCA-97A8-9A8CF4FECECC" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.6e:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "180D07AE-C571-4DD6-837C-43E2A946007A" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.6f:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BA3E4D2A-6488-4F8B-A3CA-4161A10FA4DB" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.6g:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "90789533-C741-4B1C-A24B-2C77B9E4DE5F" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.6h:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1520065B-46D7-48A4-B9D0-5B49F690C5B4" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.6i:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5B76FE2D-FBE0-4A3B-A0EA-179332D74F0E" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.6j:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2AA526B9-726A-49D5-B3CA-EBE2DA303CA0" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.6k:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "494E48E7-EF86-4860-9A53-94F6C313746E" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.6l:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2636B92E-47D5-42EA-9585-A2B84FBE71CB" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.6m:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "72FE2F46-2D0C-4C90-AFBE-D2E7B496D6E4" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "45A518E8-21BE-4C5C-B425-410AB1208E9C" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.7a:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "78E79A05-64F3-4397-952C-A5BB950C967D" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.7b:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7F7C9E77-1EB2-4720-A8FD-23DC1C877D5A" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.7c:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "549BB01D-F322-4FE3-BDA2-4FEA8ED8568A" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.7d:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4DE6CBD6-D6DD-4BC5-93F6-FDEA70163336" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.7e:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "98693865-2E79-4BD6-9F89-1994BC9A3E73" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.7f:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D6476506-EC37-4726-82DC-D0E8254A8CDD" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.7g:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5D6ECEF7-CB16-4604-894B-6EB19F1CEF55" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.7h:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1C81EF3D-4DB7-4799-9670-8D79E28CA184" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.7i:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A8116A66-175C-4E6D-9A9B-D54C1D97D213" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.7j:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "382C1679-DA1D-4FA4-9D5E-B86CC5052D49" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.7k:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1CA28812-8A24-4FE1-BED9-D6D5BB023645" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.7l:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9894D83E-2A27-446E-8B47-9C03CF802A2B" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.7m:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "55A9AC4D-E19B-431F-8679-B62F5F46BCF7" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8A4E446D-B9D3-45F2-9722-B41FA14A6C31" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.8a:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AF4EA988-FC80-4170-8933-7C6663731981" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.8b:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "64F8F53B-24A1-4877-B16E-F1917C4E4E81" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.8c:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "75D3ACD5-905F-42BB-BE1A-8382E9D823BF" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.8d:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "766EA6F2-7FA4-4713-9859-9971CCD2FDCB" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.8e:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EFBC30B7-627D-48DC-8EF0-AE8FA0C6EDBA" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.8f:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2BB38AEA-BAF0-4920-9A71-747C24444770" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.8g:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1F33EA2B-DE15-4695-A383-7A337AC38908" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.8h:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "261EE631-AB43-44FE-B02A-DFAAB8D35927" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.8i:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FA0E0BBF-D0BE-41A7-B9BB-C28F01000BC0" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.8j:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1A1365ED-4651-4AB2-A64B-43782EA2F0E8" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.8k:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EC82690C-DCED-47BA-AA93-4D0C9E95B806" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.8l:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "43B90ED1-DAB4-4239-8AD8-87E8D568D5D2" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.8m:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3C9BF2DD-85EF-49CF-8D83-0DB46449E333" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.8n:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "86C46AB8-52E5-4385-9C5C-F63FF9DB82AA" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.8o:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "564AA4E7-223E-48D8-B3E0-A461969CF530" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.8p:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A82CFB41-BEA5-4B5F-BCAA-9BAED22EEAF0" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.8q:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "35C2AE06-B6E8-41C4-BB60-177AC4819CE6" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.8r:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EB15C1F3-0DE8-4A50-B17C-618ECA58AABF" }, { "criteria": "cpe:2.3:a:openssl:openssl:0.9.8s:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "45491BD3-7C62-4422-B7DA-CB2741890FBA" }, { "criteria": "cpe:2.3:a:openssl:openssl:1.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2FBD8C92-6138-4274-ACBA-D7D42DAEC5AC" }, { "criteria": "cpe:2.3:a:openssl:openssl:1.0.0a:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "10FF0A06-DA61-4250-B083-67E55E362677" }, { "criteria": "cpe:2.3:a:openssl:openssl:1.0.0b:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8A6BA453-C150-4159-B80B-5465EFF83F11" }, { "criteria": "cpe:2.3:a:openssl:openssl:1.0.0c:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "638A2E69-8AB6-4FEA-852A-FEF16A500C1A" }, { "criteria": "cpe:2.3:a:openssl:openssl:1.0.0d:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "56C47D3A-B99D-401D-B6B8-1194B2DB4809" }, { "criteria": "cpe:2.3:a:openssl:openssl:1.0.0e:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "08355B10-E004-4BE6-A5AE-4D428810580B" }, { "criteria": "cpe:2.3:a:openssl:openssl:1.0.0f:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "738BCFDC-1C49-4774-95AE-E099F707DEF9" }, { "criteria": "cpe:2.3:a:openssl:openssl:1.0.0g:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D4B242C0-D27D-4644-AD19-5ACB853C9DC2" } ], "operator": "OR" } ] } ]