CVE-2003-0078
Last modified
CVE-2003-0078 is a vulnerability of currently unknown severity. ssl3_get_record in s3_pkt.c for OpenSSL before 0.9.7a and 0.9.6 before 0.9.6i does not perform a MAC computation if an incorrect block cipher padding is used, which causes an information leak (timing discrepancy) that may make it easier to launch cryptographic attacks that rely on distinguishing between padding and MAC verification errors, possibly leading to extraction of the original plaintext, aka the "Vaudenay timing attack.". EPSS estimates a 13.72% chance of exploitation in the next 30 days.
Description
ssl3_get_record in s3_pkt.c for OpenSSL before 0.9.7a and 0.9.6 before 0.9.6i does not perform a MAC computation if an incorrect block cipher padding is used, which causes an information leak (timing discrepancy) that may make it easier to launch cryptographic attacks that rely on distinguishing between padding and MAC verification errors, possibly leading to extraction of the original plaintext, aka the "Vaudenay timing attack."
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Openssl | Openssl | < 0.9.6i |
| Openssl | Openssl | 0.9.6i |
| Openssl | Openssl | 0.9.7 |
| Freebsd | Freebsd | 4.2 |
| Freebsd | Freebsd | 4.3 |
| Freebsd | Freebsd | 4.4 |
| Freebsd | Freebsd | 4.5 |
| Freebsd | Freebsd | 4.6 |
| Freebsd | Freebsd | 4.7 |
| Freebsd | Freebsd | 5.0 |
| Openbsd | Openbsd | 3.1 |
| Openbsd | Openbsd | 3.2 |
References
- http://marc.info/?l=bugtraq&m=104567627211904&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=104568426824439&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=104577183206905&w=2Third Party Advisory
- http://www.debian.org/security/2003/dsa-253Broken Link, Vendor Advisory
- http://www.iss.net/security_center/static/11369.phpBroken Link, Vendor Advisory
- http://www.openssl.org/news/secadv_20030219.txtBroken Link, Patch, Vendor Advisory
- http://www.osvdb.org/3945Broken Link
- http://www.securityfocus.com/bid/6884Broken Link, Third Party Advisory, VDB Entry
- http://www.trustix.org/errata/2003/0005Broken Link
- http://marc.info/?l=bugtraq&m=104567627211904&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=104568426824439&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=104577183206905&w=2Third Party Advisory
- http://www.debian.org/security/2003/dsa-253Broken Link, Vendor Advisory
- http://www.iss.net/security_center/static/11369.phpBroken Link, Vendor Advisory
- http://www.openssl.org/news/secadv_20030219.txtBroken Link, Patch, Vendor Advisory
- http://www.osvdb.org/3945Broken Link
- http://www.securityfocus.com/bid/6884Broken Link, Third Party Advisory, VDB Entry
- http://www.trustix.org/errata/2003/0005Broken Link
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2003-0078?
How severe is CVE-2003-0078?
How do I fix CVE-2003-0078?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2003
- CVE-2003-0072The Key Distribution Center (KDC) in Kerberos 5 (krb5) 1.2.7…
- CVE-2003-0073Double-free vulnerability in mysqld for MySQL before 3.23.55…
- CVE-2003-0074Format string vulnerability in mpmain.c for plpnfsd of the p…
- CVE-2003-0075Integer signedness error in the myFseek function of samplein…
- CVE-2003-0076Unknown vulnerability in the directory parser for Direct Con…
- CVE-2003-0077The hanterm (hanterm-xf) terminal emulator 2.0.5 and earlier…
- CVE-2003-0079The DEC UDK processing feature in the hanterm (hanterm-xf) t…
- CVE-2003-0080The iptables ruleset in Gnome-lokkit in Red Hat Linux 8.0 do…
- CVE-2003-0081Format string vulnerability in packet-socks.c of the SOCKS d…
- CVE-2003-0082The Key Distribution Center (KDC) in Kerberos 5 (krb5) 1.2.7…
- CVE-2003-0083Apache 1.3 before 1.3.25 and Apache 2.0 before version 2.0.4…
- CVE-2003-0084mod_auth_any package in Red Hat Enterprise Linux 2.1 and oth…
Are you affected by CVE-2003-0078?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
