← All CVEs

CVE-2019-1559

medium · 5.9

If an application encounters a fatal protocol error and then calls SSL_shutdown() twice (once to send a close_notify, and once to receive one) then OpenSSL can respond differently to the calling application if a 0 byte record is received with invalid padding compared to if a 0 byte record is received with an invalid MAC. If the application then behaves differently based on that in a way that is detectable to the remote peer, then this amounts to a padding oracle that could be used to decrypt data. In order for this to be exploitable "non-stitched" ciphersuites must be in use. Stitched ciphersuites are optimised implementations of certain commonly used ciphersuites. Also the application must call SSL_shutdown() twice even if a protocol error has occurred (applications should not do this but some do anyway). Fixed in OpenSSL 1.0.2r (Affected 1.0.2-1.0.2q).

5.9
CVSS
17.1%
EPSS (exploit prob.)
97th
EPSS percentile
2019-02-27
Published

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N

Weaknesses

CWE-203

Affected products

VendorProductAffected versions
opensslopenssl>= 1.0.2, < 1.0.2r
canonicalubuntu_linux16.04
canonicalubuntu_linux18.04
canonicalubuntu_linux18.10
debiandebian_linux8.0
debiandebian_linux9.0
netappactive_iq_unified_manager>= 7.3
netappactive_iq_unified_manager>= 9.5
netappactive_iq_unified_managerall versions
netappaltavaultall versions
netappcloud_backupall versions
netappclustered_data_ontap_antivirus_connectorall versions
netappelement_softwareall versions
netapphci_management_nodeall versions
netapphyper_converged_infrastructureall versions
netapponcommand_insightall versions
netapponcommand_unified_managerall versions
netapponcommand_unified_managerall versions
netapponcommand_unified_manager_core_packageall versions
netapponcommand_workflow_automationall versions
netappontap_select_deployall versions
netappontap_select_deploy_administration_utilityall versions
netappsantricity_smi-s_providerall versions
netappservice_processorall versions
netappsmi-s_providerall versions
netappsnapcenterall versions
netappsnapdriveall versions
netappsnapdriveall versions
netappsnapprotectall versions
netappsolidfireall versions
netappsteelstore_cloud_integrated_storageall versions
netappstorage_automation_storeall versions
netappstoragegrid>= 9.0.0, <= 9.0.4
netappstoragegridall versions
netapphci_compute_nodeall versions
f5big-ip_access_policy_manager>= 12.1.0, <= 12.1.5
f5big-ip_access_policy_manager>= 13.0.0, <= 13.1.3
f5big-ip_access_policy_manager>= 14.0.0, <= 14.1.2
f5big-ip_access_policy_manager>= 15.0.0, <= 15.1.0
f5big-ip_advanced_firewall_manager>= 12.1.0, <= 12.1.5

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2019-1559