CVE-2019-1547
Last modified
CVE-2019-1547 is a medium-severity vulnerability rated 4.7/10 on the CVSS scale. Normally in OpenSSL EC groups always have a co-factor present and this is used in side channel resistant code paths. However, in some cases, it is possible to construct a group using explicit parameters (instead of using a named curve). EPSS estimates a 1.19% chance of exploitation in the next 30 days.
Description
Normally in OpenSSL EC groups always have a co-factor present and this is used in side channel resistant code paths. However, in some cases, it is possible to construct a group using explicit parameters (instead of using a named curve). In those cases it is possible that such a group does not have the cofactor present. This can occur even where all the parameters match a known named curve. If such a curve is used then OpenSSL falls back to non-side channel resistant code paths which may result in full key recovery during an ECDSA signature operation. In order to be vulnerable an attacker would have to have the ability to time the creation of a large number of signatures where explicit parameters with no co-factor present are in use by an application using libcrypto. For the avoidance of doubt libssl is not vulnerable because explicit parameters are never used. Fixed in OpenSSL 1.1.1d (Affected 1.1.1-1.1.1c). Fixed in OpenSSL 1.1.0l (Affected 1.1.0-1.1.0k). Fixed in OpenSSL 1.0.2t (Affected 1.0.2-1.0.2s).
Metrics
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Openssl | Openssl | >= 1.0.2, <= 1.0.2s |
| Openssl | Openssl | >= 1.1.0, <= 1.1.0k |
| Openssl | Openssl | >= 1.1.1, <= 1.1.1c |
References
- https://arxiv.org/abs/1909.01785Third Party Advisory
- https://seclists.org/bugtraq/2019/Sep/25Third Party Advisory
- https://www.openssl.org/news/secadv/20190910.txtVendor Advisory
- https://arxiv.org/abs/1909.01785Third Party Advisory
- https://seclists.org/bugtraq/2019/Sep/25Third Party Advisory
- https://www.openssl.org/news/secadv/20190910.txtVendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2019-1547?
How severe is CVE-2019-1547?
How do I fix CVE-2019-1547?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2019
- CVE-2019-15464The Samsung J7 Pro Android device with a build fingerprint o…7.8
- CVE-2019-15465The Samsung J7 Pro Android device with a build fingerprint o…7.8
- CVE-2019-15466The Xiaomi Redmi 6 Pro Android device with a build fingerpri…3.3
- CVE-2019-15467The Xiaomi Mi Mix 2S Android device with a build fingerprint…3.3
- CVE-2019-15468The Xiaomi Mi A2 Lite Android device with a build fingerprin…5.5
- CVE-2019-15469The Xiaomi Mi Pad 4 Android device with a build fingerprint …5.5
- CVE-2019-15470The Xiaomi Redmi Note 6 Pro Android device with a build fing…5.5
- CVE-2019-15471The Xiaomi Mi Mix 2S Android device with a build fingerprint…5.5
- CVE-2019-15472The Xiaomi Mi A2 Lite Android device with a build fingerprin…5.5
- CVE-2019-15473The Xiaomi Mi A2 Lite Android device with a build fingerprin…5.5
- CVE-2019-15474The Xiaomi Cepheus Android device with a build fingerprint o…5.5
- CVE-2019-15475The Xiaomi Mi A3 Android device with a build fingerprint of …5.5
Are you affected by CVE-2019-1547?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
