// For flags

CVE-2018-9860

 

Severity Score

7.5
*CVSS v3

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

An issue was discovered in Botan 1.11.32 through 2.x before 2.6.0. An off-by-one error when processing malformed TLS-CBC ciphertext could cause the receiving side to include in the HMAC computation exactly 64K bytes of data following the record buffer, aka an over-read. The MAC comparison will subsequently fail and the connection will be closed. This could be used for denial of service. No information leak occurs.

Se ha descubierto un problema en Botan desde la versión 1.11.32 hasta las versiones 2.x anteriores a la 2.6.0. Un error por un paso cuando se procesa texto cifrado TLS-CBC mal formado podría provocar que la parte receptora incluya en el cálculo de la HMAC exactamente 64K bytes de datos junto con el búfer del registro. Esto también se conoce como sobrelectura. La comparación de MAC fallaría en consecuencia y la conexión se cerraría. Esto se podría utilizar para realizar una denegación de servicio (DoS). No ocurre ninguna fuga de información.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
None
Integrity
None
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2018-04-09 CVE Reserved
  • 2018-04-12 CVE Published
  • 2024-02-20 EPSS Updated
  • 2024-08-05 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-193: Off-by-one Error
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Botan Project
Search vendor "Botan Project"
Botan
Search vendor "Botan Project" for product "Botan"
>= 1.11.32 < 2.6.0
Search vendor "Botan Project" for product "Botan" and version " >= 1.11.32 < 2.6.0"
-
Affected