← All CVEs

CVE-2021-3449

medium · 5.9

An OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from a client. If a TLSv1.2 renegotiation ClientHello omits the signature_algorithms extension (where it was present in the initial ClientHello), but includes a signature_algorithms_cert extension then a NULL pointer dereference will result, leading to a crash and a denial of service attack. A server is only vulnerable if it has TLSv1.2 and renegotiation enabled (which is the default configuration). OpenSSL TLS clients are not impacted by this issue. All OpenSSL 1.1.1 versions are affected by this issue. Users of these versions should upgrade to OpenSSL 1.1.1k. OpenSSL 1.0.2 is not impacted by this issue. Fixed in OpenSSL 1.1.1k (Affected 1.1.1-1.1.1j).

5.9
CVSS
63.5%
EPSS (exploit prob.)
99th
EPSS percentile
2021-03-25
Published

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

Weaknesses

CWE-476

Affected products

VendorProductAffected versions
opensslopenssl>= 1.1.1, < 1.1.1k
debiandebian_linux9.0
debiandebian_linux10.0
freebsdfreebsd12.2
freebsdfreebsd12.2
freebsdfreebsd12.2
netappactive_iq_unified_managerall versions
netappcloud_volumes_ontap_mediatorall versions
netappe-series_performance_analyzerall versions
netapponcommand_insightall versions
netapponcommand_workflow_automationall versions
netappontap_select_deploy_administration_utilityall versions
netappsantricity_smi-s_providerall versions
netappsnapcenterall versions
netappstoragegridall versions
tenablelog_correlation_engine< 6.0.9
tenablenessus<= 8.13.1
tenablenessus_network_monitor5.11.0
tenablenessus_network_monitor5.11.1
tenablenessus_network_monitor5.12.0
tenablenessus_network_monitor5.12.1
tenablenessus_network_monitor5.13.0
tenabletenable.sc>= 5.13.0, <= 5.17.0
fedoraprojectfedora34
mcafeeweb_gateway8.2.19
mcafeeweb_gateway9.2.10
mcafeeweb_gateway10.1.1
mcafeeweb_gateway_cloud_service8.2.19
mcafeeweb_gateway_cloud_service9.2.10
mcafeeweb_gateway_cloud_service10.1.1
checkpointquantum_security_management_firmwarer80.40
checkpointquantum_security_management_firmwarer81
checkpointquantum_security_managementall versions
checkpointmulti-domain_management_firmwarer80.40
checkpointmulti-domain_management_firmwarer81
checkpointmulti-domain_managementall versions
checkpointquantum_security_gateway_firmwarer80.40
checkpointquantum_security_gateway_firmwarer81
checkpointquantum_security_gatewayall versions
oraclecommunications_communications_policy_management12.6.0.0.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2021-3449