CVE-2015-4000
low · 3.7The TLS protocol 1.2 and earlier, when a DHE_EXPORT ciphersuite is enabled on a server but not on a client, does not properly convey a DHE_EXPORT choice, which allows man-in-the-middle attackers to conduct cipher-downgrade attacks by rewriting a ClientHello with DHE replaced by DHE_EXPORT and then rewriting a ServerHello with DHE_EXPORT replaced by DHE, aka the "Logjam" issue.
3.7
CVSS
99.9%
EPSS (exploit prob.)
100th
EPSS percentile
2015-05-21
Published
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
Weaknesses
CWE-310CWE-295
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| openssl | openssl | >= 1.0.1, <= 1.0.1m |
| openssl | openssl | >= 1.0.2, <= 1.0.2a |
| canonical | ubuntu_linux | 12.04 |
| canonical | ubuntu_linux | 14.04 |
| canonical | ubuntu_linux | 14.10 |
| canonical | ubuntu_linux | 15.04 |
| openssl | openssl | <= 1.0.1m |
| hp | hp-ux | b.11.31 |
| ibm | content_manager | 8.5 |
| oracle | jrockit | r28.3.6 |
| debian | debian_linux | 7.0 |
| debian | debian_linux | 8.0 |
| oracle | jdk | 1.6.0 |
| oracle | jdk | 1.7.0 |
| oracle | jdk | 1.7.0 |
| oracle | jdk | 1.8.0 |
| oracle | jdk | 1.8.0 |
| oracle | jre | 1.6.0 |
| oracle | jre | 1.7.0 |
| oracle | jre | 1.7.0 |
| oracle | jre | 1.8.0 |
| oracle | jre | 1.8.0 |
| suse | linux_enterprise_desktop | 12 |
| suse | linux_enterprise_server | 11.0 |
| suse | linux_enterprise_software_development_kit | 12 |
| suse | suse_linux_enterprise_server | 12 |
| apple | iphone_os | <= 8.3 |
| apple | mac_os_x | <= 10.10.3 |
| mozilla | network_security_services | 3.19 |
| oracle | sparc-opl_service_processor | <= 1121 |
| apple | safari | all versions |
| chrome | all versions | |
| microsoft | internet_explorer | all versions |
| mozilla | firefox | all versions |
| opera | opera_browser | all versions |
| mozilla | firefox | 38.1.0 |
| mozilla | firefox | 39.0 |
| mozilla | firefox_esr | 31.8 |
| mozilla | seamonkey | 2.35 |
| mozilla | thunderbird | 31.8 |
Check a specific version with /api/v1/cve/match.
References
- http://aix.software.ibm.com/aix/efixes/security/sendmail_advisory2.asc
- http://fortiguard.com/advisory/2015-07-09-cve-2015-1793-openssl-alternative-chains-certificate-forgery
- http://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2015-008.txt.asc
- http://h20564.www2.hpe.com/hpsc/doc/public/display?docId=emr_na-c04876402
- http://h20564.www2.hpe.com/hpsc/doc/public/display?docId=emr_na-c04949778
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10681
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10727
- http://lists.apple.com/archives/security-announce/2015/Jun/msg00001.html
- http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.html
- http://lists.fedoraproject.org/pipermail/package-announce/2015-June/159314.html
- http://lists.fedoraproject.org/pipermail/package-announce/2015-June/159351.html
- http://lists.fedoraproject.org/pipermail/package-announce/2015-June/160117.html
- http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00023.html
- http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00024.html
- http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00026.html
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00001.html
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00003.html
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00004.html
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00005.html
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00006.html
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00007.html
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00025.html
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00031.html
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00033.html
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00034.html
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2015-4000