Уязвимость алгоритма RC4, используемого в протоколах TLS и SSL, связанная с наличием однобайтовых смещений, облегчающих атаки восстановления открытого текста
Описание
Алгоритм RC4, применяемый в протоколах TLS и SSL, имеет множество однобайтовых смещений (biases). Это облегчает удалённым злоумышленникам проведение атак восстановления открытого текста путём статистического анализа шифротекста в большом количестве сессий, использующих один и тот же открытый текст.
Заявление
Данная проблема связана с дизайном протокола RC4, а не с его реализацией. Дополнительные сведения и возможное решение проблемы описаны в комментарии к ошибке #921947. В связи с этим не планируется исправлять эту проблему в Red Hat Enterprise Linux 5 и 6.
Затронутые версии ПО
- Протоколы TLS и SSL, использующие алгоритм RC4
Тип уязвимости
Восстановление открытого текста
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 5 | gnutls | Will not fix | ||
| Red Hat Enterprise Linux 5 | nss | Will not fix | ||
| Red Hat Enterprise Linux 5 | openssl | Will not fix | ||
| Red Hat Enterprise Linux 6 | gnutls | Will not fix | ||
| Red Hat Enterprise Linux 6 | nss | Will not fix | ||
| Red Hat Enterprise Linux 6 | openssl | Will not fix |
Показывать по
Дополнительная информация
Статус:
EPSS
4.3 Medium
CVSS2
Связанные уязвимости
The RC4 algorithm, as used in the TLS protocol and SSL protocol, has many single-byte biases, which makes it easier for remote attackers to conduct plaintext-recovery attacks via statistical analysis of ciphertext in a large number of sessions that use the same plaintext.
The RC4 algorithm, as used in the TLS protocol and SSL protocol, has many single-byte biases, which makes it easier for remote attackers to conduct plaintext-recovery attacks via statistical analysis of ciphertext in a large number of sessions that use the same plaintext.
The RC4 algorithm, as used in the TLS protocol and SSL protocol, has m ...
The RC4 algorithm, as used in the TLS protocol and SSL protocol, has many single-byte biases, which makes it easier for remote attackers to conduct plaintext-recovery attacks via statistical analysis of ciphertext in a large number of sessions that use the same plaintext.
EPSS
4.3 Medium
CVSS2