OpenSSL: SSLv2 doesn't block disabled ciphers
Published Feb 15, 2016
5.9
MEDIUMCVSS 3.0
EPSS 10.73%
Description
ssl/s2_srvr.c in OpenSSL 1.0.1 before 1.0.1r and 1.0.2 before 1.0.2f does not prevent use of disabled ciphers, which makes it easier for man-in-the-middle attackers to defeat cryptographic protection mechanisms by performing computations on SSLv2 traffic, related to the get_client_master_key and get_client_hello functions.
Affected products
No data.
Configuration 2
- 1.0
- 2.0
Configuration 3
- 8.53
- 8.54
- 8.55
Configuration 4
- 1.0.1
- 1.0.1
- 1.0.1
- 1.0.1
- 1.0.1a
- 1.0.1b
- 1.0.1c
- 1.0.1d
- 1.0.1e
- 1.0.1f
- 1.0.1g
- 1.0.1h
- 1.0.1i
- 1.0.1j
- 1.0.1k
- 1.0.1l
- 1.0.1m
- 1.0.1n
- 1.0.1o
- 1.0.1p
- 1.0.1q
- 1.0.2
- 1.0.2
- 1.0.2
- 1.0.2
- 1.0.2a
- 1.0.2b
- 1.0.2c
- 1.0.2d
- 1.0.2e
Configuration 5
- 8.11.16.3.8
Configuration 6
- 5.0.16
No data.
RHEV 3.X Hypervisor and Agents for RHEL-6
rhev-hypervisor7-0:7.2-20160302.1.el6ev
Fixed · RHSA-2016:0379
RHEV 3.X Hypervisor and Agents for RHEL-7
rhev-hypervisor7-0:7.2-20160302.1.el7ev
Fixed · RHSA-2016:0379
Red Hat Enterprise Linux 4 Extended Lifecycle Support
openssl-0:0.9.7a-43.23.el4
Fixed · RHSA-2016:0306
Red Hat Enterprise Linux 5
openssl-0:0.9.8e-39.el5_11
Fixed · RHSA-2016:0302
Red Hat Enterprise Linux 5.6 Long Life
openssl-0:0.9.8e-12.el5_6.13
Fixed · RHSA-2016:0304
Red Hat Enterprise Linux 5.9 Long Life
openssl-0:0.9.8e-26.el5_9.5
Fixed · RHSA-2016:0304
Red Hat Enterprise Linux 6
openssl-0:1.0.1e-42.el6_7.4
Fixed · RHSA-2016:0301
Red Hat Enterprise Linux 6
openssl098e-0:0.9.8e-20.el6_7.1
Fixed · RHSA-2016:0372
Red Hat Enterprise Linux 6.2 Advanced Update Support
openssl-0:1.0.0-20.el6_2.8
Fixed · RHSA-2016:0303
Red Hat Enterprise Linux 6.4 Advanced Update Support
openssl-0:1.0.0-27.el6_4.5
Fixed · RHSA-2016:0303
Red Hat Enterprise Linux 6.5 Advanced Update Support
openssl-0:1.0.1e-16.el6_5.16
Fixed · RHSA-2016:0303
Red Hat Enterprise Linux 6.6 Extended Update Support
openssl-0:1.0.1e-30.el6_6.12
Fixed · RHSA-2016:0305
Red Hat Enterprise Linux 7
openssl-1:1.0.1e-51.el7_2.4
Fixed · RHSA-2016:0301
Red Hat Enterprise Linux 7
openssl098e-0:0.9.8e-29.el7_2.3
Fixed · RHSA-2016:0372
Red Hat Enterprise Linux 7.1 Extended Update Support
openssl-1:1.0.1e-42.ael7b_1.10
Fixed · RHSA-2016:0305
Red Hat JBoss Enterprise Application Platform 6.4
openssl
Fixed · RHSA-2016:0490
Red Hat JBoss Web Server 2.1
openssl
Fixed · RHSA-2016:0445
Red Hat JBoss Web Server 3.0
n/a
Fixed · RHSA-2016:0446
Red Hat Enterprise Linux 5
openssl097a
Affected
Red Hat Enterprise Linux 6
guest-images
Affected
Red Hat Enterprise Linux 7
rhel-guest-image
Affected
Red Hat JBoss Enterprise Application Platform 5
openssl
Will not fix
Red Hat JBoss Enterprise Web Server 1
openssl
Will not fix
Red Hat JBoss Enterprise Web Server 3
openssl
Affected
| Product | Package | State | Advisory |
|---|---|---|---|
| RHEV 3.X Hypervisor and Agents for RHEL-6 | rhev-hypervisor7-0:7.2-20160302.1.el6ev | Fixed | RHSA-2016:0379 |
| RHEV 3.X Hypervisor and Agents for RHEL-7 | rhev-hypervisor7-0:7.2-20160302.1.el7ev | Fixed | RHSA-2016:0379 |
| Red Hat Enterprise Linux 4 Extended Lifecycle Support | openssl-0:0.9.7a-43.23.el4 | Fixed | RHSA-2016:0306 |
| Red Hat Enterprise Linux 5 | openssl-0:0.9.8e-39.el5_11 | Fixed | RHSA-2016:0302 |
| Red Hat Enterprise Linux 5.6 Long Life | openssl-0:0.9.8e-12.el5_6.13 | Fixed | RHSA-2016:0304 |
| Red Hat Enterprise Linux 5.9 Long Life | openssl-0:0.9.8e-26.el5_9.5 | Fixed | RHSA-2016:0304 |
| Red Hat Enterprise Linux 6 | openssl-0:1.0.1e-42.el6_7.4 | Fixed | RHSA-2016:0301 |
| Red Hat Enterprise Linux 6 | openssl098e-0:0.9.8e-20.el6_7.1 | Fixed | RHSA-2016:0372 |
| Red Hat Enterprise Linux 6.2 Advanced Update Support | openssl-0:1.0.0-20.el6_2.8 | Fixed | RHSA-2016:0303 |
| Red Hat Enterprise Linux 6.4 Advanced Update Support | openssl-0:1.0.0-27.el6_4.5 | Fixed | RHSA-2016:0303 |
| Red Hat Enterprise Linux 6.5 Advanced Update Support | openssl-0:1.0.1e-16.el6_5.16 | Fixed | RHSA-2016:0303 |
| Red Hat Enterprise Linux 6.6 Extended Update Support | openssl-0:1.0.1e-30.el6_6.12 | Fixed | RHSA-2016:0305 |
| Red Hat Enterprise Linux 7 | openssl-1:1.0.1e-51.el7_2.4 | Fixed | RHSA-2016:0301 |
| Red Hat Enterprise Linux 7 | openssl098e-0:0.9.8e-29.el7_2.3 | Fixed | RHSA-2016:0372 |
| Red Hat Enterprise Linux 7.1 Extended Update Support | openssl-1:1.0.1e-42.ael7b_1.10 | Fixed | RHSA-2016:0305 |
| Red Hat JBoss Enterprise Application Platform 6.4 | openssl | Fixed | RHSA-2016:0490 |
| Red Hat JBoss Web Server 2.1 | openssl | Fixed | RHSA-2016:0445 |
| Red Hat JBoss Web Server 3.0 | n/a | Fixed | RHSA-2016:0446 |
| Red Hat Enterprise Linux 5 | openssl097a | Affected | n/a |
| Red Hat Enterprise Linux 6 | guest-images | Affected | n/a |
| Red Hat Enterprise Linux 7 | rhel-guest-image | Affected | n/a |
| Red Hat JBoss Enterprise Application Platform 5 | openssl | Will not fix | n/a |
| Red Hat JBoss Enterprise Web Server 1 | openssl | Will not fix | n/a |
| Red Hat JBoss Enterprise Web Server 3 | openssl | Affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
This security flaw can only be exploited when a malicious client negotiates SSLv2 ciphers and completes a SSLv2 handshake. This flaw cannot be actively exploited by a Man-In-The-Middle attacker. All versions of OpenSSL shipped with Red Hat Enterprise Linux enable SSLv2 protocol, but disable SSLv2 ciphers by default (in Red Hat Enterprise Linux 6 and later), therefore are vulnerable to this flaw. Red Hat Product Security has rated this issue as having Low security impact, a future update may address this flaw. SSLv2 suffers from a number of security flaws allowing attackers to capture and alter information passed between a client and the server. Therefore we strongly recommend that SSLv2 should be disabled on all the SSL/TLS servers.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
AV:N/AC:M/Au:N/C:P/I:N/A:N
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 2, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (52 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 2, 2026 | 10.73% (0.10731) | 95.70th | v5 (v2026.06.15) |
| Jun 15, 2026 | 10.73% (0.10731) | 95.24th | v5 (v2026.06.15) |
| Jun 4, 2026 | 22.18% (0.22185) | 95.91th | v4 (v2025.03.14) |
| Apr 21, 2026 | 14.19% (0.14195) | 94.41th | v4 (v2025.03.14) |
| Mar 4, 2026 | 21.95% (0.21948) | 95.65th | v4 (v2025.03.14) |
| Mar 1, 2026 | 17.86% (0.17863) | 95.04th | v4 (v2025.03.14) |
| Feb 4, 2026 | 22.39% (0.22395) | 95.68th | v4 (v2025.03.14) |
| Feb 1, 2026 | 18.25% (0.18250) | 95.05th | v4 (v2025.03.14) |
| Jan 4, 2026 | 21.95% (0.21948) | 95.58th | v4 (v2025.03.14) |
| Jan 1, 2026 | 17.86% (0.17863) | 94.96th | v4 (v2025.03.14) |
| Dec 28, 2025 | 21.95% (0.21948) | 95.58th | v4 (v2025.03.14) |
| Dec 27, 2025 | 29.53% (0.29527) | 96.48th | v4 (v2025.03.14) |
| Dec 17, 2025 | 21.95% (0.21948) | 95.57th | v4 (v2025.03.14) |
| Dec 4, 2025 | 18.01% (0.18009) | 94.90th | v4 (v2025.03.14) |
| Dec 1, 2025 | 14.68% (0.14677) | 94.25th | v4 (v2025.03.14) |
| Nov 4, 2025 | 18.01% (0.18009) | 94.88th | v4 (v2025.03.14) |
| Nov 1, 2025 | 11.93% (0.11930) | 93.50th | v4 (v2025.03.14) |
| Oct 28, 2025 | 18.01% (0.18009) | 94.86th | v4 (v2025.03.14) |
| Oct 27, 2025 | 24.75% (0.24752) | 95.90th | v4 (v2025.03.14) |
| Oct 4, 2025 | 18.01% (0.18009) | 94.91th | v4 (v2025.03.14) |
| Oct 1, 2025 | 11.93% (0.11930) | 93.53th | v4 (v2025.03.14) |
| Sep 4, 2025 | 24.75% (0.24752) | 95.95th | v4 (v2025.03.14) |
| Sep 1, 2025 | 13.71% (0.13709) | 94.05th | v4 (v2025.03.14) |
| Aug 4, 2025 | 24.75% (0.24752) | 95.91th | v4 (v2025.03.14) |
| Aug 1, 2025 | 13.71% (0.13709) | 94.02th | v4 (v2025.03.14) |
| Jul 30, 2025 | 24.75% (0.24752) | 95.91th | v4 (v2025.03.14) |
| Jul 4, 2025 | 18.21% (0.18215) | 94.90th | v4 (v2025.03.14) |
| Jul 1, 2025 | 12.16% (0.12156) | 93.54th | v4 (v2025.03.14) |
| Jun 4, 2025 | 18.21% (0.18215) | 94.85th | v4 (v2025.03.14) |
| Jun 1, 2025 | 12.16% (0.12156) | 93.49th | v4 (v2025.03.14) |
| May 4, 2025 | 18.21% (0.18215) | 94.81th | v4 (v2025.03.14) |
| May 1, 2025 | 12.16% (0.12156) | 93.47th | v4 (v2025.03.14) |
| Mar 30, 2025 | 18.61% (0.18607) | 94.75th | v4 (v2025.03.14) |
| Mar 29, 2025 | 48.09% (0.48090) | 96.67th | v4 (v2025.03.14) |
| Mar 28, 2025 | 18.61% (0.18607) | 94.75th | v4 (v2025.03.14) |
| Mar 27, 2025 | 48.09% (0.48090) | 97.32th | v4 (v2025.03.14) |
| Mar 20, 2025 | 18.21% (0.18215) | 94.72th | v4 (v2025.03.14) |
| Mar 19, 2025 | 43.80% (0.43797) | 97.13th | v4 (v2025.03.14) |
| Mar 17, 2025 | 22.18% (0.22185) | 95.34th | v4 (v2025.03.14) |
| Dec 12, 2024 | 1.74% (0.01744) | 88.43th | v3 (v2023.03.01) |
| Aug 12, 2024 | 1.80% (0.01801) | 88.34th | v3 (v2023.03.01) |
| Aug 11, 2024 | 0.53% (0.00528) | 77.28th | v3 (v2023.03.01) |
| Jun 20, 2024 | 1.80% (0.01801) | 88.22th | v3 (v2023.03.01) |
| Nov 8, 2023 | 2.43% (0.02430) | 88.78th | v3 (v2023.03.01) |
| Oct 2, 2023 | 0.72% (0.00717) | 78.25th | v3 (v2023.03.01) |
| Jul 27, 2023 | 0.85% (0.00852) | 80.01th | v3 (v2023.03.01) |
| May 17, 2023 | 0.62% (0.00618) | 75.72th | v3 (v2023.03.01) |
| Apr 8, 2023 | 0.44% (0.00436) | 70.82th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.31% (0.00307) | 65.13th | v3 (v2023.03.01) |
| Mar 6, 2023 | 4.72% (0.04720) | 89.23th | v2 (v2022.01.01) |
| Apr 1, 2022 | 4.72% (0.04720) | 88.14th | v2 (v2022.01.01) |
| Feb 4, 2022 | 4.72% (0.04720) | 74.52th | v2 (v2022.01.01) |
References (41)
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10759
- http://lists.fedoraproject.org/pipermail/package-announce/2016-January/176373.html vendor-advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00001.html vendor-advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00002.html vendor-advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00003.html vendor-advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00004.html vendor-advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00006.html vendor-advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00007.html vendor-advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00009.html vendor-advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00010.html vendor-advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00011.html vendor-advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00012.html vendor-advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00017.html vendor-advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00025.html vendor-advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00038.html vendor-advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00015.html vendor-advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00017.html vendor-advisory
- http://www.openssl.org/news/secadv/20160128.txt Vendor Advisory
- http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html Patch
- http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html
- http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html
- http://www.oracle.com/technetwork/topics/security/bulletinjan2016-2867206.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- http://www.securityfocus.com/bid/82237 vdb-entry
- http://www.securityfocus.com/bid/91787 vdb-entry
- http://www.securitytracker.com/id/1034849 vdb-entry
- https://access.redhat.com/security/cve/CVE-2015-3197 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1301846 Issue Tracking
- https://cert-portal.siemens.com/productcert/pdf/ssa-412672.pdf
- https://git.openssl.org/?p=openssl.git%3Ba=commit%3Bh=d81a1600588b726c2bdccda7efad3cc7a87d6245
- https://h20566.www2.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03724en_us
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05390893
- https://nvd.nist.gov/vuln/detail/CVE-2015-3197
- https://security.FreeBSD.org/advisories/FreeBSD-SA-16:11.openssl.asc vendor-advisory
- https://security.gentoo.org/glsa/201601-05 vendor-advisory
- https://www.cve.org/CVERecord?id=CVE-2015-3197
- https://www.kb.cert.org/vuls/id/257823 third-party-advisory
- https://www.openssl.org/news/secadv/20160128.txt
Change history (0)
No recorded changes yet.