CVE-2002-20001

HIGHCVSS 7.5/10EPSS 23.06%

Last modified

CVE-2002-20001 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. The Diffie-Hellman Key Agreement Protocol allows remote attackers (from the client side) to send arbitrary numbers that are actually not public keys, and trigger expensive server-side DHE modular-exponentiation calculations, aka a D(HE)at or D(HE)ater attack. The client needs very little CPU resources and network bandwidth. EPSS estimates a 23.06% chance of exploitation in the next 30 days.

Description

The Diffie-Hellman Key Agreement Protocol allows remote attackers (from the client side) to send arbitrary numbers that are actually not public keys, and trigger expensive server-side DHE modular-exponentiation calculations, aka a D(HE)at or D(HE)ater attack. The client needs very little CPU resources and network bandwidth. The attack may be more disruptive in cases where a client can require a server to select its largest supported key size. The basic attack scenario is that the client must claim that it can only communicate with DHE, and the server must be configured to allow DHE.

Metrics

CVSS 3.1
7.5/10

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS Probability
23.06%

97.5th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
BalasysDheaterAll versions
SiemensScalance W1750d FirmwareAll versions
SuseLinux Enterprise Server11
SuseLinux Enterprise Server12
SuseLinux Enterprise Server15
F5Big-Ip Access Policy Manager>= 13.1.0, < 16.1.4
F5Big-Ip Access Policy Manager>= 17.0.0, < 17.1.0
F5Big-Ip Advanced Firewall Manager>= 13.1.0, <= 17.1.2
F5Big-Ip Advanced Firewall Manager17.5.0
F5Big-Ip Advanced Web Application Firewall>= 13.1.0, <= 17.1.2
F5Big-Ip Advanced Web Application Firewall17.5.0
F5Big-Ip Analytics>= 13.1.0, <= 17.1.2
F5Big-Ip Analytics17.5.0
F5Big-Ip Application Acceleration Manager>= 13.1.0, <= 17.1.2
F5Big-Ip Application Acceleration Manager17.5.0
F5Big-Ip Application Security Manager>= 13.1.0, <= 17.1.2
F5Big-Ip Application Security Manager17.5.0
F5Big-Ip Application Visibility And Reporting>= 13.1.0, <= 17.1.2
F5Big-Ip Application Visibility And Reporting17.5.0
F5Big-Ip Carrier-Grade Nat>= 13.1.0, <= 17.1.2
F5Big-Ip Carrier-Grade Nat17.5.0
F5Big-Ip Ddos Hybrid Defender>= 13.1.0, <= 17.1.2
F5Big-Ip Ddos Hybrid Defender17.5.0
F5Big-Ip Domain Name System>= 13.1.0, <= 17.1.2
F5Big-Ip Domain Name System17.5.0
F5Big-Ip Edge Gateway>= 13.1.0, <= 17.1.2
F5Big-Ip Edge Gateway17.5.0
F5Big-Ip Fraud Protection Service>= 13.1.0, <= 17.1.2
F5Big-Ip Fraud Protection Service17.5.0
F5Big-Ip Global Traffic Manager>= 13.1.0, <= 17.1.2
F5Big-Ip Global Traffic Manager17.5.0
F5Big-Ip Link Controller>= 13.1.0, <= 17.1.2
F5Big-Ip Link Controller17.5.0
F5Big-Ip Local Traffic Manager>= 13.1.0, <= 17.1.2
F5Big-Ip Local Traffic Manager17.5.0
F5Big-Ip Policy Enforcement Manager>= 13.1.0, <= 17.1.2
F5Big-Ip Policy Enforcement Manager17.5.0
F5Big-Ip Service Proxy1.6.0
F5Big-Ip Ssl Orchestrator>= 13.1.0, <= 17.1.2
F5Big-Ip Ssl Orchestrator17.5.0
F5Big-Ip Webaccelerator>= 13.1.0, <= 17.1.2
F5Big-Ip Webaccelerator17.5.0
F5Big-Ip Websafe>= 13.1.0, <= 17.1.2
F5Big-Ip Websafe17.5.0
F5Big-Iq Centralized Management>= 8.0.0, <= 8.4.0
F5Big-Iq Centralized Management7.1.0
F5Traffix Signaling Delivery Controller5.1.0
F5Traffix Signaling Delivery Controller5.2.0
F5F5os-A>= 1.3.0, <= 1.3.2
F5F5os-A>= 1.5.0, <= 1.5.3

Showing 50 of 64 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Analyzed

Frequently Asked Questions

What is CVE-2002-20001?
The Diffie-Hellman Key Agreement Protocol allows remote attackers (from the client side) to send arbitrary numbers that are actually not public keys, and trigger expensive server-side DHE modular-exponentiation calculations, aka a D(HE)at or D(HE)ater attack. The client needs very little CPU resources and network bandwidth. The attack may be more disruptive in cases where a client can require a server to select its largest supported key size. The basic attack scenario is that the client must claim that it can only communicate with DHE, and the server must be configured to allow DHE.
How severe is CVE-2002-20001?
CVE-2002-20001 has a CVSS score of 7.5/10 (HIGH severity). The EPSS model estimates a 23.06% probability of exploitation in the next 30 days.
How do I fix CVE-2002-20001?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2002-20001?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST