Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2015-2808 | First vendor Publication | 2015-03-31 |
Vendor | Cve | Last vendor Modification | 2024-11-21 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:L/Au:N/C:P/I:N/A:N) | |||
---|---|---|---|
Cvss Base Score | 5 | Attack Range | Network |
Cvss Impact Score | 2.9 | Attack Complexity | Low |
Cvss Expoit Score | 10 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
The RC4 algorithm, as used in the TLS protocol and SSL protocol, does not properly combine state data with key data during the initialization phase, which makes it easier for remote attackers to conduct plaintext-recovery attacks against the initial bytes of a stream by sniffing network traffic that occasionally relies on keys affected by the Invariance Weakness, and then using a brute-force approach involving LSB values, aka the "Bar Mitzvah" issue. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2808 |
CWE : Common Weakness Enumeration
% | Id | Name |
---|---|---|
100 % | CWE-327 | Use of a Broken or Risky Cryptographic Algorithm (CWE/SANS Top 25) |
OVAL Definitions
Definition Id: oval:org.mitre.oval:def:28927 | |||
Oval ID: | oval:org.mitre.oval:def:28927 | ||
Title: | Vulnerability in IBM SDK Java JSSE affects AIX | ||
Description: | The RC4 algorithm, as used in the TLS protocol and SSL protocol, does not properly combine state data with key data during the initialization phase, which makes it easier for remote attackers to conduct plaintext-recovery attacks against the initial bytes of a stream by sniffing network traffic that occasionally relies on keys affected by the Invariance Weakness, and then using a brute-force approach involving LSB values, aka the "Bar Mitzvah" issue. | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2015-2808 | Version: | 4 |
Platform(s): | IBM AIX 6.1 IBM AIX 7.1 | Product(s): | |
Definition Synopsis: | |||
|
CPE : Common Platform Enumeration
Information Assurance Vulnerability Management (IAVM)
Date | Description |
---|---|
2015-07-16 | IAVM : 2015-A-0158 - Multiple Vulnerabilities in Oracle Java SE Severity : Category I - VMSKEY : V0061089 |
Snort® IPS/IDS
Date | Description |
---|---|
2017-04-12 | SSL/TLS weak RC4 cipher suite use attempt RuleID : 41907 - Revision : 3 - Type : POLICY-OTHER |
2016-04-05 | SSL/TLS weak RC4 cipher suite use attempt RuleID : 37916 - Revision : 3 - Type : POLICY-OTHER |
2016-04-05 | SSL/TLS weak RC4 cipher suite use attempt RuleID : 37915 - Revision : 3 - Type : POLICY-OTHER |
2016-04-05 | SSL/TLS weak RC4 cipher suite use attempt RuleID : 37914 - Revision : 3 - Type : POLICY-OTHER |
2016-04-05 | SSL/TLS weak RC4 cipher suite use attempt RuleID : 37913 - Revision : 3 - Type : POLICY-OTHER |
2016-04-05 | SSL/TLS weak RC4 cipher suite use attempt RuleID : 37912 - Revision : 3 - Type : POLICY-OTHER |
2016-03-14 | SSL/TLS weak RC4 cipher suite use attempt RuleID : 37026 - Revision : 4 - Type : POLICY-OTHER |
2016-03-14 | SSL/TLS weak RC4 cipher suite use attempt RuleID : 37025 - Revision : 4 - Type : POLICY-OTHER |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2017-12-04 | Name : The remote host is missing a vendor-supplied security patch. File : check_point_gaia_sk106499.nasl - Type : ACT_GATHER_INFO |
2016-07-25 | Name : The remote web server is affected by multiple vulnerabilities. File : oracle_http_server_cpu_jul_2016.nasl - Type : ACT_GATHER_INFO |
2016-07-14 | Name : A video conferencing application running on the remote host is affected by mu... File : cisco_telepresence_vcs_multiple_880.nasl - Type : ACT_GATHER_INFO |
2016-06-23 | Name : The remote device is affected by multiple vulnerabilities. File : juniper_space_jsa10727.nasl - Type : ACT_GATHER_INFO |
2016-06-16 | Name : The remote host is affected by a security feature bypass vulnerability. File : ibm_storwize_cve_2015_2808.nasl - Type : ACT_GATHER_INFO |
2016-04-29 | Name : The remote host is affected by multiple vulnerabilities. File : hp_data_protector_hpsbgn03580.nasl - Type : ACT_GATHER_INFO |
2016-02-29 | Name : The remote AIX host is missing a vendor-supplied security patch. File : aix_U867669.nasl - Type : ACT_GATHER_INFO |
2016-01-14 | Name : The remote SUSE host is missing one or more security updates. File : suse_SU-2016-0113-1.nasl - Type : ACT_GATHER_INFO |
2016-01-06 | Name : The remote database server is affected by multiple vulnerabilities. File : db2_105fp7_win.nasl - Type : ACT_GATHER_INFO |
2016-01-06 | Name : The remote database server is affected by multiple vulnerabilities. File : db2_105fp7_nix.nasl - Type : ACT_GATHER_INFO |
2016-01-04 | Name : The remote Gentoo host is missing one or more security-related patches. File : gentoo_GLSA-201512-10.nasl - Type : ACT_GATHER_INFO |
2015-12-21 | Name : The remote web server is affected by a security feature bypass vulnerability. File : ibm_http_server_bar_mitzvah.nasl - Type : ACT_GATHER_INFO |
2015-12-07 | Name : The remote web server hosts a web application that is potentially affected by... File : jira_6_4_10.nasl - Type : ACT_GATHER_INFO |
2015-12-04 | Name : The remote AIX host is missing a vendor-supplied security patch. File : aix_U863668.nasl - Type : ACT_GATHER_INFO |
2015-12-03 | Name : The remote SUSE host is missing one or more security updates. File : suse_SU-2015-2166-1.nasl - Type : ACT_GATHER_INFO |
2015-10-23 | Name : The remote web server is affected by multiple vulnerabilities. File : oracle_http_server_cpu_oct_2015.nasl - Type : ACT_GATHER_INFO |
2015-09-18 | Name : The remote device is missing a vendor-supplied security patch. File : f5_bigip_SOL16864.nasl - Type : ACT_GATHER_INFO |
2015-09-18 | Name : The remote database server is affected by multiple vulnerabilities. File : db2_105fp6.nasl - Type : ACT_GATHER_INFO |
2015-09-09 | Name : The remote SUSE host is missing one or more security updates. File : suse_SU-2015-1509-1.nasl - Type : ACT_GATHER_INFO |
2015-08-31 | Name : The remote Debian host is missing a security update. File : debian_DLA-303.nasl - Type : ACT_GATHER_INFO |
2015-08-26 | Name : The remote Amazon Linux AMI host is missing a security update. File : ala_ALAS-2015-586.nasl - Type : ACT_GATHER_INFO |
2015-08-24 | Name : The remote Debian host is missing a security-related update. File : debian_DSA-3339.nasl - Type : ACT_GATHER_INFO |
2015-08-13 | Name : The remote SUSE host is missing one or more security updates. File : suse_SU-2015-1375-1.nasl - Type : ACT_GATHER_INFO |
2015-08-07 | Name : The remote Ubuntu host is missing one or more security-related patches. File : ubuntu_USN-2706-1.nasl - Type : ACT_GATHER_INFO |
2015-08-04 | Name : The remote SUSE host is missing one or more security updates. File : suse_SU-2015-1331-1.nasl - Type : ACT_GATHER_INFO |
2015-08-04 | Name : The remote SUSE host is missing one or more security updates. File : suse_SU-2015-1329-1.nasl - Type : ACT_GATHER_INFO |
2015-08-04 | Name : The remote Scientific Linux host is missing one or more security updates. File : sl_20150730_java_1_6_0_openjdk_on_SL5_x.nasl - Type : ACT_GATHER_INFO |
2015-07-31 | Name : The remote SUSE host is missing one or more security updates. File : suse_SU-2015-1319-1.nasl - Type : ACT_GATHER_INFO |
2015-07-31 | Name : The remote CentOS host is missing one or more security updates. File : centos_RHSA-2015-1526.nasl - Type : ACT_GATHER_INFO |
2015-07-31 | Name : The remote Oracle Linux host is missing one or more security updates. File : oraclelinux_ELSA-2015-1526.nasl - Type : ACT_GATHER_INFO |
2015-07-31 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2015-1526.nasl - Type : ACT_GATHER_INFO |
2015-07-31 | Name : The remote SUSE host is missing one or more security updates. File : suse_SU-2015-1320-1.nasl - Type : ACT_GATHER_INFO |
2015-07-31 | Name : The remote Ubuntu host is missing one or more security-related patches. File : ubuntu_USN-2696-1.nasl - Type : ACT_GATHER_INFO |
2015-07-28 | Name : The remote Debian host is missing a security-related update. File : debian_DSA-3316.nasl - Type : ACT_GATHER_INFO |
2015-07-27 | Name : The remote openSUSE host is missing a security update. File : openSUSE-2015-512.nasl - Type : ACT_GATHER_INFO |
2015-07-27 | Name : The remote openSUSE host is missing a security update. File : openSUSE-2015-511.nasl - Type : ACT_GATHER_INFO |
2015-07-23 | Name : The remote Amazon Linux AMI host is missing a security update. File : ala_ALAS-2015-570.nasl - Type : ACT_GATHER_INFO |
2015-07-23 | Name : The remote Amazon Linux AMI host is missing a security update. File : ala_ALAS-2015-571.nasl - Type : ACT_GATHER_INFO |
2015-07-20 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2015-1242.nasl - Type : ACT_GATHER_INFO |
2015-07-20 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2015-1243.nasl - Type : ACT_GATHER_INFO |
2015-07-20 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2015-1241.nasl - Type : ACT_GATHER_INFO |
2015-07-18 | Name : The remote database server is affected by multiple vulnerabilities. File : db2_97fp10_multi_vuln.nasl - Type : ACT_GATHER_INFO |
2015-07-18 | Name : The remote database server is affected by multiple vulnerabilities. File : db2_101fp5.nasl - Type : ACT_GATHER_INFO |
2015-07-17 | Name : The remote Windows host contains a programming platform that is affected by m... File : oracle_java_cpu_jul_2015.nasl - Type : ACT_GATHER_INFO |
2015-07-17 | Name : The remote Unix host contains a programming platform that is affected by mult... File : oracle_java_cpu_jul_2015_unix.nasl - Type : ACT_GATHER_INFO |
2015-07-17 | Name : The remote Oracle Linux host is missing one or more security updates. File : oraclelinux_ELSA-2015-1230.nasl - Type : ACT_GATHER_INFO |
2015-07-16 | Name : The remote Scientific Linux host is missing one or more security updates. File : sl_20150715_java_1_7_0_openjdk_on_SL5_x.nasl - Type : ACT_GATHER_INFO |
2015-07-16 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2015-1230.nasl - Type : ACT_GATHER_INFO |
2015-07-16 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2015-1229.nasl - Type : ACT_GATHER_INFO |
2015-07-16 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2015-1228.nasl - Type : ACT_GATHER_INFO |
2015-07-16 | Name : The remote Scientific Linux host is missing one or more security updates. File : sl_20150715_java_1_8_0_openjdk_on_SL6_x.nasl - Type : ACT_GATHER_INFO |
2015-07-16 | Name : The remote Oracle Linux host is missing one or more security updates. File : oraclelinux_ELSA-2015-1229.nasl - Type : ACT_GATHER_INFO |
2015-07-16 | Name : The remote Oracle Linux host is missing one or more security updates. File : oraclelinux_ELSA-2015-1228.nasl - Type : ACT_GATHER_INFO |
2015-07-16 | Name : A programming platform installed on the remote Windows host is affected by mu... File : oracle_jrockit_cpu_jul_2015.nasl - Type : ACT_GATHER_INFO |
2015-07-16 | Name : The remote Scientific Linux host is missing one or more security updates. File : sl_20150715_java_1_7_0_openjdk_on_SL6_x.nasl - Type : ACT_GATHER_INFO |
2015-07-16 | Name : The remote CentOS host is missing one or more security updates. File : centos_RHSA-2015-1230.nasl - Type : ACT_GATHER_INFO |
2015-07-16 | Name : The remote CentOS host is missing one or more security updates. File : centos_RHSA-2015-1229.nasl - Type : ACT_GATHER_INFO |
2015-07-16 | Name : The remote CentOS host is missing one or more security updates. File : centos_RHSA-2015-1228.nasl - Type : ACT_GATHER_INFO |
2015-07-09 | Name : The remote application server is affected by multiple vulnerabilities. File : websphere_8_5_5_6.nasl - Type : ACT_GATHER_INFO |
2015-06-29 | Name : The remote SUSE host is missing one or more security updates. File : suse_SU-2015-1086-4.nasl - Type : ACT_GATHER_INFO |
2015-06-26 | Name : The remote SUSE host is missing one or more security updates. File : suse_SU-2015-1138-1.nasl - Type : ACT_GATHER_INFO |
2015-06-26 | Name : The remote SUSE host is missing one or more security updates. File : suse_SU-2015-1086-3.nasl - Type : ACT_GATHER_INFO |
2015-06-23 | Name : The remote SUSE host is missing one or more security updates. File : suse_SU-2015-1086-2.nasl - Type : ACT_GATHER_INFO |
2015-06-19 | Name : The remote SUSE host is missing one or more security updates. File : suse_SU-2015-1086-1.nasl - Type : ACT_GATHER_INFO |
2015-06-19 | Name : The remote SUSE host is missing one or more security updates. File : suse_SU-2015-1085-1.nasl - Type : ACT_GATHER_INFO |
2015-06-18 | Name : The remote SUSE host is missing one or more security updates. File : suse_SU-2015-1073-1.nasl - Type : ACT_GATHER_INFO |
2015-06-12 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2015-1091.nasl - Type : ACT_GATHER_INFO |
2015-06-10 | Name : The remote AIX host has a version of Java SDK installed that is affected by m... File : aix_java_april2015_advisory.nasl - Type : ACT_GATHER_INFO |
2015-05-21 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2015-1021.nasl - Type : ACT_GATHER_INFO |
2015-05-21 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2015-1020.nasl - Type : ACT_GATHER_INFO |
2015-05-13 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2015-1007.nasl - Type : ACT_GATHER_INFO |
2015-05-13 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2015-1006.nasl - Type : ACT_GATHER_INFO |
2015-04-30 | Name : The remote AIX host has a version of Java SDK installed that is affected by m... File : aix_java_apr2015_advisory.nasl - Type : ACT_GATHER_INFO |
2015-01-27 | Name : The remote web server is affected by multiple vulnerabilities. File : oracle_http_server_cpu_jan_2015.nasl - Type : ACT_GATHER_INFO |
2013-04-05 | Name : The remote service supports the use of the RC4 cipher. File : ssl_rc4_supported_ciphers.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 12:46:33 |
|
2023-09-07 21:28:11 |
|
2021-11-30 01:18:24 |
|
2021-09-22 01:17:25 |
|
2021-05-05 01:17:47 |
|
2021-05-04 12:39:35 |
|
2021-04-22 01:48:26 |
|
2021-03-27 01:14:36 |
|
2020-12-24 01:13:09 |
|
2020-12-23 01:13:18 |
|
2020-11-24 00:22:47 |
|
2020-05-23 00:44:53 |
|
2019-03-19 12:07:03 |
|
2018-01-18 21:22:33 |
|
2018-01-05 09:23:28 |
|
2017-12-16 13:23:35 |
|
2017-12-05 13:24:05 |
|
2017-11-08 09:23:48 |
|
2017-11-04 09:23:38 |
|
2017-10-20 09:23:00 |
|
2017-09-23 09:24:30 |
|
2017-09-22 09:24:13 |
|
2017-09-21 09:25:20 |
|
2017-09-06 09:22:59 |
|
2017-09-01 09:24:43 |
|
2017-05-24 09:23:30 |
|
2017-01-03 09:23:15 |
|
2016-12-28 09:22:05 |
|
2016-12-24 09:24:11 |
|
2016-12-22 09:23:55 |
|
2016-12-08 09:23:42 |
|
2016-12-07 21:24:36 |
|
2016-12-03 09:24:10 |
|
2016-11-29 00:25:09 |
|
2016-11-22 09:23:01 |
|
2016-09-28 09:23:39 |
|
2016-08-27 13:26:29 |
|
2016-08-23 09:24:54 |
|
2016-08-20 09:22:29 |
|
2016-08-17 09:23:50 |
|
2016-08-09 09:24:05 |
|
2016-07-22 12:03:25 |
|
2016-07-18 13:25:13 |
|
2016-06-24 13:26:47 |
|
2016-06-17 13:28:10 |
|
2016-06-15 09:26:02 |
|
2016-06-03 09:25:26 |
|
2016-04-30 13:30:48 |
|
2016-04-22 09:25:27 |
|
2016-03-01 13:26:32 |
|
2016-01-15 13:26:45 |
|
2016-01-07 13:25:37 |
|
2016-01-05 13:26:00 |
|
2015-12-22 13:25:22 |
|
2015-12-08 13:26:38 |
|
2015-12-05 13:27:11 |
|
2015-12-04 13:26:21 |
|
2015-11-18 13:26:27 |
|
2015-10-18 17:24:41 |
|
2015-09-19 13:23:30 |
|
2015-09-10 13:26:34 |
|
2015-09-02 13:39:20 |
|
2015-08-27 13:38:45 |
|
2015-08-25 13:29:55 |
|
2015-08-19 00:24:09 |
|
2015-08-18 13:35:10 |
|
2015-08-18 09:20:00 |
|
2015-08-12 13:33:19 |
|
2015-07-31 13:29:01 |
|
2015-07-28 13:32:25 |
|
2015-07-24 13:29:48 |
|
2015-07-22 05:31:14 |
|
2015-07-18 13:29:08 |
|
2015-07-17 09:20:21 |
|
2015-07-06 09:26:28 |
|
2015-07-02 00:26:51 |
|
2015-06-30 13:26:53 |
|
2015-06-27 13:28:54 |
|
2015-06-26 09:26:44 |
|
2015-06-24 13:27:48 |
|
2015-06-20 13:30:20 |
|
2015-06-19 13:28:32 |
|
2015-06-13 13:28:09 |
|
2015-06-11 13:27:48 |
|
2015-05-22 13:29:27 |
|
2015-05-14 13:28:16 |
|
2015-05-01 13:28:26 |
|
2015-04-10 13:28:14 |
|
2015-04-01 21:27:59 |
|
2015-04-01 09:27:43 |
|