← All CVEs

CVE-2018-0732

high · 7.5

During key agreement in a TLS handshake using a DH(E) based ciphersuite a malicious server can send a very large prime value to the client. This will cause the client to spend an unreasonably long period of time generating a key for this prime resulting in a hang until the client has finished. This could be exploited in a Denial Of Service attack. Fixed in OpenSSL 1.1.0i-dev (Affected 1.1.0-1.1.0h). Fixed in OpenSSL 1.0.2p-dev (Affected 1.0.2-1.0.2o).

7.5
CVSS
48.8%
EPSS (exploit prob.)
99th
EPSS percentile
2018-06-12
Published

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Weaknesses

CWE-320

Affected products

VendorProductAffected versions
opensslopenssl>= 1.0.2, <= 1.0.2o
opensslopenssl>= 1.1.0, <= 1.1.0h
canonicalubuntu_linux12.04
canonicalubuntu_linux14.04
canonicalubuntu_linux16.04
canonicalubuntu_linux17.10
canonicalubuntu_linux18.04
debiandebian_linux8.0
nodejsnode.js>= 6.0.0, < 6.8.1
nodejsnode.js>= 6.9.0, < 6.14.4
nodejsnode.js>= 8.0.0, < 8.8.1
nodejsnode.js>= 8.9.0, < 8.11.4
nodejsnode.js>= 10.0.0, < 10.9.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2018-0732