nCipher CHIL Random Cache Leakage Vulnerability
BID:14452
Info
nCipher CHIL Random Cache Leakage Vulnerability
| Bugtraq ID: | 14452 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | Unknown |
| Published: | Aug 02 2005 12:00AM |
| Updated: | Aug 02 2005 12:00AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
nCipher CHIL |
| Not Vulnerable: | |
Discussion
nCipher CHIL Random Cache Leakage Vulnerability
nCipher CHIL library is affected by a random cache leakage vulnerability.
This issue arises when a program attempts to obtain random bytes from an nCipher hardware module. If the program calling the library forks, the child processes will inherit the identical randomness cache as the parent.
This impact of this issue depends on the type of application that forks and uses CHIL to generate random data. Denial of service conditions in Web servers due to the failure of SSL handshakes and other attacks may be possible.
Applications that fork and use CHIL directly or through OpenSSL are vulnerable to this issue. OpenSSL 0.9.6-ENGINE and 0.9.7 use CHIL for random number generation (via RAND_bytes or RAND_pseudo_bytes) if the "chil" engine is enabled.
nCipher CHIL library is affected by a random cache leakage vulnerability.
This issue arises when a program attempts to obtain random bytes from an nCipher hardware module. If the program calling the library forks, the child processes will inherit the identical randomness cache as the parent.
This impact of this issue depends on the type of application that forks and uses CHIL to generate random data. Denial of service conditions in Web servers due to the failure of SSL handshakes and other attacks may be possible.
Applications that fork and use CHIL directly or through OpenSSL are vulnerable to this issue. OpenSSL 0.9.6-ENGINE and 0.9.7 use CHIL for random number generation (via RAND_bytes or RAND_pseudo_bytes) if the "chil" engine is enabled.
Exploit / POC
nCipher CHIL Random Cache Leakage Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
nCipher CHIL Random Cache Leakage Vulnerability
Solution:
nCipher has released an advisory to address this issue. Please see the referenced advisory for more information.
nCipher media containing fixed versions of CHIL library include versions 9.01 and 9.04. Please contact the vendor to obtain fixes.
Solution:
nCipher has released an advisory to address this issue. Please see the referenced advisory for more information.
nCipher media containing fixed versions of CHIL library include versions 9.01 and 9.04. Please contact the vendor to obtain fixes.
References
nCipher CHIL Random Cache Leakage Vulnerability
References:
References: