Wind River Support Network

HomeDefectsLIN7-6762
Fixed

LIN7-6762 : Security Advisory - openssl - CVE-2016-2183

Created: Sep 1, 2016    Updated: Sep 8, 2018
Resolved Date: Sep 7, 2016
Found In Version: 7.0
Fix Version: 7.0.0.20
Severity: Standard
Applicable for: Wind River Linux 7
Component/s: Userspace

Description

Ciphers with 64-bit block sizes used in CBC mode were found to be vulnerable to birthday attack when key renegotiation doesn't happen frequently or at all in long running connections. 3DES cipher as used in TLS protocol is vulnerable to this attack, that allows remote attacker to recover partial plaintext information (XOR of two plaintext blocks).

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-2183 

Security Notices


Other Downloads


CVEs


Live chat
Online