OpenVPN 'openvpn_decrypt()' Function Information Disclosure Vulnerability
BID:59672
Info
OpenVPN 'openvpn_decrypt()' Function Information Disclosure Vulnerability
| Bugtraq ID: | 59672 |
| Class: | Design Error |
| CVE: |
CVE-2013-2061 |
| Remote: | Yes |
| Local: | No |
| Published: | May 06 2013 12:00AM |
| Updated: | Apr 13 2015 09:56PM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
Ubuntu Ubuntu Linux 12.04 LTS i386 Ubuntu Ubuntu Linux 12.04 LTS amd64 OpenVPN OpenVPN 2.0.9 OpenVPN OpenVPN 2.0.8 OpenVPN OpenVPN 2.0.7 OpenVPN OpenVPN 2.0.6 OpenVPN OpenVPN 2.0.5 OpenVPN OpenVPN 2.0.4 OpenVPN OpenVPN 2.0.3 OpenVPN OpenVPN 2.0.2 OpenVPN OpenVPN 2.0.1 OpenVPN OpenVPN 2.0 beta11 OpenVPN OpenVPN 2.0 OpenVPN OpenVPN 2.1-rc9 OpenVPN OpenVPN 2.1-rc8 OpenVPN OpenVPN 2.1-rc21 OpenVPN OpenVPN 2.1-beta14 MandrakeSoft Enterprise Server 5 x86_64 MandrakeSoft Enterprise Server 5 Gentoo Linux |
| Not Vulnerable: | |
Discussion
OpenVPN 'openvpn_decrypt()' Function Information Disclosure Vulnerability
OpenVPN is prone to an information-disclosure vulnerability.
An attacker can exploit this issue to gain access to sensitive information; this may aid in further attacks.
Versions prior to OpenVPN 2.3.1 are vulnerable.
OpenVPN is prone to an information-disclosure vulnerability.
An attacker can exploit this issue to gain access to sensitive information; this may aid in further attacks.
Versions prior to OpenVPN 2.3.1 are vulnerable.
Exploit / POC
OpenVPN 'openvpn_decrypt()' Function Information Disclosure Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
OpenVPN 'openvpn_decrypt()' Function Information Disclosure Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
MandrakeSoft Enterprise Server 5 x86_64
MandrakeSoft Enterprise Server 5
Mandriva Business Server 1 X86 64
Solution:
Updates are available. Please see the references or vendor advisory for more information.
MandrakeSoft Enterprise Server 5 x86_64
-
Mandriva openvpn-2.1-0.rc10.2.4mdvmes5.2.x86_64.rpm
http://www.mandriva.com/en/downloads/
MandrakeSoft Enterprise Server 5
-
Mandriva openvpn-2.1-0.rc10.2.4mdvmes5.2.i586.rpm
http://www.mandriva.com/en/downloads/
Mandriva Business Server 1 X86 64
-
Mandriva openvpn-2.2.2-6.1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/
References
OpenVPN 'openvpn_decrypt()' Function Information Disclosure Vulnerability
References:
References:
- CVE request: OpenVPN use of non-constant-time memcmp in HMAC comparison in openv (SecLists.Org)
- OpenVPN Homepage (OpenVPN)
- Use constant time memcmp when comparing HMACs (OpenVPN)