Описание
A security vulnerability has been detected in Cesanta Mongoose up to 7.20. This issue affects the function mg_aes_gcm_decrypt of the file /src/tls_aes128.c of the component GCM Authentication Tag Handler. Such manipulation leads to improper verification of cryptographic signature. The attack may be performed from remote. A high complexity level is associated with this attack. The exploitability is assessed as difficult. The exploit has been disclosed publicly and may be used. Upgrading to version 7.21 is capable of addressing this issue. It is advisable to upgrade the affected component. VulDB has contacted the vendor early and they confirmed quickly, that this issue got fixed already.
A flaw was found in Cesanta Mongoose. A remote attacker could exploit a vulnerability in the GCM Authentication Tag Handler, specifically within the mg_aes_gcm_decrypt function. This flaw allows for improper verification of cryptographic signatures, which could lead to a bypass of integrity checks. Exploitation of this vulnerability is considered difficult due to its high complexity.
Отчет
Red Hat rates this vulnerability as Low impact with a CVSS score of 3.7. No Red Hat supported products ship the Cesanta Mongoose library, and the only affected packages are community ones. The vulnerability is specific to Mongoose's built-in TLS implementation, commonly used in embedded and IoT deployments whilst on Linux distributions applications tend to build against OpenSSL or mbedTLS which are not affected. Even where built-in TLS is in use, an attacker would need an active man-in-the-middle position on the network and prior knowledge of the plaintext layout at specific byte offsets to tamper with data in transit. The impact is limited to integrity within a single TLS session, with no effect on confidentiality or availability.
Меры по смягчению последствий
If you are compiling Mongoose from source, build it against OpenSSL or mbedTLS instead of the built-in TLS stack by setting MG_TLS=MG_TLS_OPENSSL or MG_TLS=MG_TLS_MBED. For applications where switching TLS backends is not an option, restricting network access to the Mongoose service reduces the risk of a man-in-the-middle attack reaching the vulnerable code path.
Ссылки на источники
Дополнительная информация
Статус:
EPSS
3.7 Low
CVSS3
Связанные уязвимости
A security vulnerability has been detected in Cesanta Mongoose up to 7.20. This issue affects the function mg_aes_gcm_decrypt of the file /src/tls_aes128.c of the component GCM Authentication Tag Handler. Such manipulation leads to improper verification of cryptographic signature. The attack may be performed from remote. A high complexity level is associated with this attack. The exploitability is assessed as difficult. The exploit has been disclosed publicly and may be used. Upgrading to version 7.21 is capable of addressing this issue. It is advisable to upgrade the affected component. VulDB has contacted the vendor early and they confirmed quickly, that this issue got fixed already.
A security vulnerability has been detected in Cesanta Mongoose up to 7.20. This issue affects the function mg_aes_gcm_decrypt of the file /src/tls_aes128.c of the component GCM Authentication Tag Handler. Such manipulation leads to improper verification of cryptographic signature. The attack may be performed from remote. A high complexity level is associated with this attack. The exploitability is assessed as difficult. The exploit has been disclosed publicly and may be used. Upgrading to version 7.21 is capable of addressing this issue. It is advisable to upgrade the affected component. VulDB has contacted the vendor early and they confirmed quickly, that this issue got fixed already.
A security vulnerability has been detected in Cesanta Mongoose up to 7 ...
A security vulnerability has been detected in Cesanta Mongoose up to 7.20. This issue affects the function mg_aes_gcm_decrypt of the file /src/tls_aes128.c of the component GCM Authentication Tag Handler. Such manipulation leads to improper verification of cryptographic signature. The attack may be performed from remote. A high complexity level is associated with this attack. The exploitability is assessed as difficult. The exploit has been disclosed publicly and may be used. Upgrading to version 7.21 is capable of addressing this issue. It is advisable to upgrade the affected component. VulDB has contacted the vendor early and they confirmed quickly, that this issue got fixed already.
EPSS
3.7 Low
CVSS3