A Security Bypass vulnerability exists in PolarSSL 0.99pre4 through 1.1.1 due to a weak encryption error when generating Diffie-Hellman values and RSA keys.
References
Link | Resource |
---|---|
https://security-tracker.debian.org/tracker/CVE-2012-2130 | Third Party Advisory |
https://bugs.gentoo.org/show_bug.cgi?id=CVE-2012-2130 | Issue Tracking Third Party Advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-2130 | Issue Tracking Third Party Advisory |
http://www.securityfocus.com/bid/53610 | Third Party Advisory VDB Entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/75726 | Third Party Advisory VDB Entry |
http://security.gentoo.org/glsa/glsa-201310-10.xml | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Information
Published : 2019-12-06 10:15
Updated : 2019-12-18 12:15
NVD link : CVE-2012-2130
Mitre link : CVE-2012-2130
JSON object : View
CWE
CWE-326
Inadequate Encryption Strength
Products Affected
debian
- debian_linux
fedoraproject
- fedora
polarssl
- polarssl