Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2009-1603

Опубликовано: 11 мая 2009
Источник: debian
EPSS Низкий

Описание

src/tools/pkcs11-tool.c in pkcs11-tool in OpenSC 0.11.7, when used with unspecified third-party PKCS#11 modules, generates RSA keys with incorrect public exponents, which allows attackers to read the cleartext form of messages that were intended to be encrypted.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
openscfixed0.11.8package
openscnot-affectedetchpackage
openscnot-affectedlennypackage

Примечания

  • checked code, public exponent set correctly in etch/lenny versions (CK_BYTE publicExponent[] = { 3 };)

EPSS

Процентиль: 77%
0.0105
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 16 лет назад

src/tools/pkcs11-tool.c in pkcs11-tool in OpenSC 0.11.7, when used with unspecified third-party PKCS#11 modules, generates RSA keys with incorrect public exponents, which allows attackers to read the cleartext form of messages that were intended to be encrypted.

redhat
больше 16 лет назад

src/tools/pkcs11-tool.c in pkcs11-tool in OpenSC 0.11.7, when used with unspecified third-party PKCS#11 modules, generates RSA keys with incorrect public exponents, which allows attackers to read the cleartext form of messages that were intended to be encrypted.

CVSS3: 7.5
nvd
больше 16 лет назад

src/tools/pkcs11-tool.c in pkcs11-tool in OpenSC 0.11.7, when used with unspecified third-party PKCS#11 modules, generates RSA keys with incorrect public exponents, which allows attackers to read the cleartext form of messages that were intended to be encrypted.

CVSS3: 7.5
github
почти 4 года назад

src/tools/pkcs11-tool.c in pkcs11-tool in OpenSC 0.11.7, when used with unspecified third-party PKCS#11 modules, generates RSA keys with incorrect public exponents, which allows attackers to read the cleartext form of messages that were intended to be encrypted.

fstec
больше 16 лет назад

Уязвимости операционной системы Gentoo Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность защищаемой информации

EPSS

Процентиль: 77%
0.0105
Низкий