OpenJDK MessageDigest.isEqual introduces timing attack vulnerabilities (6863503)
Published Nov 5, 2009
5.0
MEDIUMCVSS 2.0
EPSS 3.17%
Description
The MessageDigest.isEqual function in Java Runtime Environment (JRE) in Sun Java SE in JDK and JRE 5.0 before Update 22, JDK and JRE 6 before Update 17, SDK and JRE 1.3.x before 1.3.1_27, and SDK and JRE 1.4.x before 1.4.2_24 allows remote attackers to spoof HMAC-based digital signatures, and possibly bypass authentication, via unspecified vectors related to "timing attack vulnerabilities," aka Bug Id 6863503.
Affected products
No data.
Configuration 1
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.4.2_1
- 1.4.2_2
- 1.4.2_02
- 1.4.2_03
- 1.4.2_3
- 1.4.2_4
- 1.4.2_04
- 1.4.2_05
- 1.4.2_5
- 1.4.2_06
- 1.4.2_6
- 1.4.2_7
- 1.4.2_07
- 1.4.2_8
- 1.4.2_08
- 1.4.2_09
- 1.4.2_9
- 1.4.2_10
- 1.4.2_11
- 1.4.2_12
- 1.4.2_13
- 1.4.2_14
- 1.4.2_15
- 1.4.2_16
- 1.4.2_17
- 1.4.2_18
- 1.4.2_19
- 1.4.2_20
- 1.4.2_21
- 1.4.2_22
- 1.4.2_23
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.4.2_01
- 1.4.2_1
- 1.4.2_2
- 1.4.2_02
- 1.4.2_03
- 1.4.2_3
- 1.4.2_04
- 1.4.2_4
- 1.4.2_5
- 1.4.2_05
- 1.4.2_6
- 1.4.2_06
- 1.4.2_07
- 1.4.2_7
- 1.4.2_8
- 1.4.2_08
- 1.4.2_09
- 1.4.2_9
- 1.4.2_10
- 1.4.2_11
- 1.4.2_12
- 1.4.2_13
- 1.4.2_14
- 1.4.2_15
- 1.4.2_16
- 1.4.2_17
- 1.4.2_18
- 1.4.2_19
- 1.4.2_20
- 1.4.2_21
- 1.4.2_22
- 1.4.2_23
Configuration 2
- 1.3.1_1
- 1.3.1_01
- 1.3.1_01a
- 1.3.1_02
- 1.3.1_2
- 1.3.1_03
- 1.3.1_3
- 1.3.1_4
- 1.3.1_04
- 1.3.1_05
- 1.3.1_5
- 1.3.1_06
- 1.3.1_6
- 1.3.1_07
- 1.3.1_7
- 1.3.1_8
- 1.3.1_08
- 1.3.1_9
- 1.3.1_09
- 1.3.1_10
- 1.3.1_11
- 1.3.1_12
- 1.3.1_13
- 1.3.1_14
- 1.3.1_15
- 1.3.1_16
- 1.3.1_17
- 1.3.1_18
- 1.3.1_19
- 1.3.1_20
- 1.3.1_21
- 1.3.1_22
- 1.3.1_23
- 1.3.1_24
- 1.3.1_25
- 1.3.1_01
- 1.3.1_01a
- 1.3.1_2
- 1.3.1_02
- 1.3.1_03
- 1.3.1_3
- 1.3.1_4
- 1.3.1_04
- 1.3.1_5
- 1.3.1_05
- 1.3.1_6
- 1.3.1_06
- 1.3.1_7
- 1.3.1_07
- 1.3.1_8
- 1.3.1_08
- 1.3.1_9
- 1.3.1_09
- 1.3.1_10
- 1.3.1_11
- 1.3.1_12
- 1.3.1_13
- 1.3.1_14
- 1.3.1_15
- 1.3.1_16
- 1.3.1_17
- 1.3.1_18
- 1.3.1_19
- 1.3.1_20
- 1.3.1_21
- 1.3.1_22
- 1.3.1_23
- 1.3.1_24
- 1.3.1_25
No data.
Extras for RHEL 3
java-1.4.2-ibm-0:1.4.2.13.3-1jpp.1.el3
Fixed · RHSA-2009:1643
Extras for RHEL 4
java-1.4.2-ibm-0:1.4.2.13.3-1jpp.1.el4
Fixed · RHSA-2009:1643
Extras for RHEL 4
java-1.5.0-ibm-1:1.5.0.11-1jpp.1.el4
Fixed · RHSA-2009:1647
Extras for RHEL 4
java-1.5.0-sun-0:1.5.0.22-1jpp.1.el4
Fixed · RHSA-2009:1571
Extras for RHEL 4
java-1.6.0-ibm-1:1.6.0.7-1jpp.3.el4
Fixed · RHSA-2009:1694
Extras for RHEL 4
java-1.6.0-sun-1:1.6.0.17-1jpp.1.el4
Fixed · RHSA-2009:1560
RHEL 4 for SAP
java-1.4.2-ibm-0:1.4.2.13.4.sap-1jpp.1.el4_8
Fixed · RHSA-2010:0408
RHEL 5 for SAP
java-1.4.2-ibm-0:1.4.2.13.4.sap-1jpp.1.el5
Fixed · RHSA-2010:0408
Red Hat Enterprise Linux 5
java-1.6.0-openjdk-1:1.6.0.0-1.7.b09.el5
Fixed · RHSA-2009:1584
Red Hat Network Satellite Server v 5.3
java-1.6.0-ibm-1:1.6.0.7-1jpp.2.el5
Fixed · RHSA-2010:0043
Supplementary for Red Hat Enterprise Linux 5
java-1.4.2-ibm-0:1.4.2.13.3-1jpp.1.el5
Fixed · RHSA-2009:1643
Supplementary for Red Hat Enterprise Linux 5
java-1.5.0-ibm-1:1.5.0.11-1jpp.1.el5
Fixed · RHSA-2009:1647
Supplementary for Red Hat Enterprise Linux 5
java-1.5.0-sun-0:1.5.0.22-1jpp.1.el5
Fixed · RHSA-2009:1571
Supplementary for Red Hat Enterprise Linux 5
java-1.6.0-ibm-1:1.6.0.7-1jpp.2.el5
Fixed · RHSA-2009:1694
Supplementary for Red Hat Enterprise Linux 5
java-1.6.0-sun-1:1.6.0.17-1jpp.2.el5
Fixed · RHSA-2009:1560
| Product | Package | State | Advisory |
|---|---|---|---|
| Extras for RHEL 3 | java-1.4.2-ibm-0:1.4.2.13.3-1jpp.1.el3 | Fixed | RHSA-2009:1643 |
| Extras for RHEL 4 | java-1.4.2-ibm-0:1.4.2.13.3-1jpp.1.el4 | Fixed | RHSA-2009:1643 |
| Extras for RHEL 4 | java-1.5.0-ibm-1:1.5.0.11-1jpp.1.el4 | Fixed | RHSA-2009:1647 |
| Extras for RHEL 4 | java-1.5.0-sun-0:1.5.0.22-1jpp.1.el4 | Fixed | RHSA-2009:1571 |
| Extras for RHEL 4 | java-1.6.0-ibm-1:1.6.0.7-1jpp.3.el4 | Fixed | RHSA-2009:1694 |
| Extras for RHEL 4 | java-1.6.0-sun-1:1.6.0.17-1jpp.1.el4 | Fixed | RHSA-2009:1560 |
| RHEL 4 for SAP | java-1.4.2-ibm-0:1.4.2.13.4.sap-1jpp.1.el4_8 | Fixed | RHSA-2010:0408 |
| RHEL 5 for SAP | java-1.4.2-ibm-0:1.4.2.13.4.sap-1jpp.1.el5 | Fixed | RHSA-2010:0408 |
| Red Hat Enterprise Linux 5 | java-1.6.0-openjdk-1:1.6.0.0-1.7.b09.el5 | Fixed | RHSA-2009:1584 |
| Red Hat Network Satellite Server v 5.3 | java-1.6.0-ibm-1:1.6.0.7-1jpp.2.el5 | Fixed | RHSA-2010:0043 |
| Supplementary for Red Hat Enterprise Linux 5 | java-1.4.2-ibm-0:1.4.2.13.3-1jpp.1.el5 | Fixed | RHSA-2009:1643 |
| Supplementary for Red Hat Enterprise Linux 5 | java-1.5.0-ibm-1:1.5.0.11-1jpp.1.el5 | Fixed | RHSA-2009:1647 |
| Supplementary for Red Hat Enterprise Linux 5 | java-1.5.0-sun-0:1.5.0.22-1jpp.1.el5 | Fixed | RHSA-2009:1571 |
| Supplementary for Red Hat Enterprise Linux 5 | java-1.6.0-ibm-1:1.6.0.7-1jpp.2.el5 | Fixed | RHSA-2009:1694 |
| Supplementary for Red Hat Enterprise Linux 5 | java-1.6.0-sun-1:1.6.0.17-1jpp.2.el5 | Fixed | RHSA-2009:1560 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (29)
- http://java.sun.com/javase/6/webnotes/6u17.html x_refsource_CONFIRM
- http://lists.apple.com/archives/security-announce/2009/Dec/msg00000.html vendor-advisoryx_refsource_APPLE
- http://lists.apple.com/archives/security-announce/2009/Dec/msg00001.html vendor-advisoryx_refsource_APPLE
- http://lists.opensuse.org/opensuse-security-announce/2009-11/msg00010.html vendor-advisoryx_refsource_SUSE
- http://marc.info/?l=bugtraq&m=126566824131534&w=2 vendor-advisoryx_refsource_HP
- http://marc.info/?l=bugtraq&m=131593453929393&w=2 vendor-advisoryx_refsource_HP
- http://marc.info/?l=bugtraq&m=134254866602253&w=2 vendor-advisoryx_refsource_HP
- http://secunia.com/advisories/37231 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/37239 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/37386 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/37581 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/37841 third-party-advisoryx_refsource_SECUNIA
- http://security.gentoo.org/glsa/glsa-200911-02.xml vendor-advisoryx_refsource_GENTOO
- http://sunsolve.sun.com/search/document.do?assetkey=1-66-270475-1 vendor-advisoryx_refsource_SUNALERTPatchVendor Advisory
- http://support.apple.com/kb/HT3969 x_refsource_CONFIRM
- http://support.apple.com/kb/HT3970 x_refsource_CONFIRM
- http://www.mandriva.com/security/advisories?name=MDVSA-2010:084 vendor-advisoryx_refsource_MANDRIVA
- http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html x_refsource_CONFIRM
- http://www.redhat.com/support/errata/RHSA-2009-1694.html vendor-advisoryx_refsource_REDHAT
- http://www.securityfocus.com/bid/36881 vdb-entryx_refsource_BID
- http://www.vupen.com/english/advisories/2009/3131 vdb-entryx_refsource_VUPENVendor Advisory
- https://access.redhat.com/security/cve/CVE-2009-3875 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=530057 Issue Tracking
- https://nvd.nist.gov/vuln/detail/CVE-2009-3875
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11847 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12112 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7549 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7913 vdb-entrysignaturex_refsource_OVAL
- https://www.cve.org/CVERecord?id=CVE-2009-3875
Change history (0)
No recorded changes yet.