Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2015-3193

The Montgomery squaring implementation in crypto/bn/asm/x86_64-mont5.pl in OpenSSL 1.0.2 before 1.0.2e on the x86_64 platform, as used by the BN_mod_exp function, mishandles carry propagation and produces incorrect output, which makes it easier for remote attackers to obtain sensitive private-key information via an attack against use of a (1) Diffie-Hellman (DH) or (2) Diffie-Hellman Ephemeral (DHE) ciphersuite.

  • Published: Dec 6, 2015
  • Updated: Apr 13, 2023
  • CVE: CVE-2015-3193
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 7.5
  • AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

CVSS v2:

  • Severity: Medium
  • Score: 5
  • AV:N/AC:L/Au:N/C:P/I:N/A:N

CWEs:

Software From Fixed in
openssl / openssl 1.0.2a 1.0.2a.x
openssl / openssl 1.0.2b 1.0.2b.x
openssl / openssl 1.0.2c 1.0.2c.x
openssl / openssl 1.0.2 1.0.2.x
openssl / openssl 1.0.2d 1.0.2d.x
nodejs / node.js 4.0.0 4.1.2.x
nodejs / node.js 4.2.0 4.2.3
nodejs / node.js 5.0.0 5.1.1
canonical / ubuntu_linux 15.10 15.10.x
canonical / ubuntu_linux 15.04 15.04.x
canonical / ubuntu_linux 14.04 14.04.x
canonical / ubuntu_linux 12.04 12.04.x