Описание
A flaw was found in 389-ds-base where the LDBM backend attribute encryption uses a hardcoded static initialization vector for AES-CBC and 3DES-CBC operations, allowing an attacker with privileged filesystem access to detect plaintext equality across encrypted entries by comparing ciphertext blocks.
Отчет
The 389-ds-base attribute encryption feature uses a static initialization vector for AES-CBC and 3DES-CBC operations, making the encryption deterministic. This does not enable direct plaintext recovery but allows ciphertext comparison across entries sharing the same attribute value. Exploiting this requires privileged read access to the raw database files on disk, which on Red Hat Enterprise Linux are owned by the dirsrv user with mode 0700. An attacker with this level of access can typically obtain attribute values through more direct means, such as querying LDAP as Directory Manager. The practical risk is limited to scenarios where database files are exposed without the corresponding encryption keys, such as stolen backups. Red Hat rates this Moderate: impact is limited to Confidentiality (C:H) with no Integrity or Availability impact, and exploitation requires local access (AV:L) with high privileges (PR:H).
Меры по смягчению последствий
Disable attribute encryption if it is not required for the deployment. If attribute encryption is required, restrict filesystem access to the LDBM database directory (/var/lib/dirsrv/slapd-/db/) to ensure only authorized administrators can read database files.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Directory Server 11 | redhat-ds:11/389-ds-base | Fix deferred | ||
| Red Hat Directory Server 12 | redhat-ds:12/389-ds-base | Fix deferred | ||
| Red Hat Directory Server 13 | 389-ds-base | Fix deferred | ||
| Red Hat Enterprise Linux 10 | 389-ds-base | Fix deferred | ||
| Red Hat Enterprise Linux 6 | 389-ds-base | Out of support scope | ||
| Red Hat Enterprise Linux 7 | 389-ds-base | Fix deferred | ||
| Red Hat Enterprise Linux 8 | 389-ds:1.4/389-ds-base | Fix deferred | ||
| Red Hat Enterprise Linux 9 | 389-ds-base | Fix deferred |
Показывать по
Дополнительная информация
Статус:
4.4 Medium
CVSS3
Связанные уязвимости
A flaw was found in 389-ds-base where the LDBM backend attribute encryption uses a hardcoded static initialization vector for AES-CBC and 3DES-CBC operations, allowing an attacker with privileged filesystem access to detect plaintext equality across encrypted entries by comparing ciphertext blocks.
A flaw was found in 389-ds-base where the LDBM backend attribute encryption uses a hardcoded static initialization vector for AES-CBC and 3DES-CBC operations, allowing an attacker with privileged filesystem access to detect plaintext equality across encrypted entries by comparing ciphertext blocks.
A flaw was found in 389-ds-base where the LDBM backend attribute encry ...
A flaw was found in 389-ds-base where the LDBM backend attribute encryption uses a hardcoded static initialization vector for AES-CBC and 3DES-CBC operations, allowing an attacker with privileged filesystem access to detect plaintext equality across encrypted entries by comparing ciphertext blocks.
4.4 Medium
CVSS3