← Back

CVE-2021-4160

nvd nist
Published: Jan 28, 2022Modified: Jun 17, 2026

JSON object

Loading...
5.9
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.2 / Impact: 3.6
Source: NVD

Description

There is a carry propagation bug in the MIPS32 and MIPS64 squaring procedure. Many EC algorithms are affected, including some of the TLS 1.3 default curves. Impact was not analyzed in detail, because the pre-requisites for attack are considered unlikely and include reusing private keys. Analysis suggests that attacks against RSA and DSA as a result of this defect would be very difficult to perform and are not believed likely. Attacks against DH are considered just feasible (although very difficult) because most of the work necessary to deduce information about a private key may be performed offline. The amount of resources required for such an attack would be significant. However, for an attack on TLS to be meaningful, the server would have to share the DH private key among multiple clients, which is no longer an option since CVE-2016-0701. This issue affects OpenSSL versions 1.0.2, 1.1.1 and 3.0.0. It was addressed in the releases of 1.1.1m and 3.0.1 on the 15th of December 2021. For the 1.0.2 release it is addressed in git commit 6fc1aaaf3 that is available to premium support customers only. It will be made available in 1.0.2zc when it is released. The issue only affects OpenSSL on MIPS platforms. Fixed in OpenSSL 3.0.1 (Affected 3.0.0). Fixed in OpenSSL 1.1.1m (Affected 1.1.1-1.1.1l). Fixed in OpenSSL 1.0.2zc-dev (Affected 1.0.2-1.0.2zb).

Affected (35)

Show all products
1 product
Openssl
1 product
Debian Linux
5 products
Health Sciences Inform Publisher
Jd Edwards Enterpriseone Tools
Jd Edwards World Security
Peoplesoft Enterprise Peopletools
Enterprise Manager Ops Center
1 product
Sinec Ins
Configuration A
22 vulnerable
Vulnerable SoftwareAffected Versions
Openssl
From 1.0.2 to 1.0.2zb
From 1.1.1 to 1.1.1m
Version 3.0.0
Version 3.0.0 alpha10
Version 3.0.0 alpha11
Version 3.0.0 alpha12
Version 3.0.0 alpha13
Version 3.0.0 alpha14
Version 3.0.0 alpha15
Version 3.0.0 alpha16
Version 3.0.0 alpha17
Version 3.0.0 alpha1
Version 3.0.0 alpha2
Version 3.0.0 alpha3
Version 3.0.0 alpha4
Version 3.0.0 alpha5
Version 3.0.0 alpha6
Version 3.0.0 alpha7
Version 3.0.0 alpha8
Version 3.0.0 alpha9
Version 3.0.0 beta1
Version 3.0.0 beta2
Configuration B
3 vulnerable
Vulnerable SoftwareAffected Versions
Debian
Version 10.0
Version 11.0
Version 9.0
Configuration C
6 vulnerable
Configuration D
3 vulnerable
Vulnerable SoftwareAffected Versions
Siemens
Before 1.0
Version 1.0
Version 1.0 sp1
Configuration E
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 12.4.0.0

References (20)

Source: openssl-security@openssl.org
Third Party Advisory
Source: openssl-security@openssl.org
Third Party Advisory
Source: openssl-security@openssl.org
Third Party Advisory
Source: openssl-security@openssl.org
Vendor Advisory
Source: openssl-security@openssl.org
PatchThird Party Advisory
Source: openssl-security@openssl.org
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.