SSL/TLS: Birthday attack against 64-bit block ciphers (SWEET32)
Published Sep 1, 2016
7.5
HIGHCVSS 3.1
EPSS 94.70%
Description
The DES and Triple DES ciphers, as used in the TLS, SSH, and IPSec protocols and other protocols and products, have a birthday bound of approximately four billion blocks, which makes it easier for remote attackers to obtain cleartext data via a birthday attack against a long-duration encrypted session, as demonstrated by an HTTPS session using Triple DES in CBC mode, aka a "Sweet32" attack.
Affected products
No data.
Configuration 1
- 6.0.0
- 1.0.0
- 2.0.0
- 3.0
- 5.0
- 6.0
- 7.0
Configuration 2
Configuration 3
- 9.6.6-068
- 9.7.0-006
Configuration 4
- 1.0.1a
- 1.0.1b
- 1.0.1c
- 1.0.1d
- 1.0.1e
- 1.0.1f
- 1.0.1g
- 1.0.1h
- 1.0.1i
- 1.0.1j
- 1.0.1k
- 1.0.1l
- 1.0.1m
- 1.0.1n
- 1.0.1o
- 1.0.1p
- 1.0.1q
- 1.0.1r
- 1.0.1t
- 1.0.2a
- 1.0.2b
- 1.0.2c
- 1.0.2d
- 1.0.2e
- 1.0.2f
- 1.0.2h
No data.
JBoss Core Services on RHEL 6
jbcs-httpd24-httpd-0:2.4.23-122.jbcs.el6
Fixed · RHSA-2017:2710
JBoss Core Services on RHEL 6
jbcs-httpd24-openssl-1:1.0.2h-14.jbcs.el6
Fixed · RHSA-2017:2710
JBoss Core Services on RHEL 7
jbcs-httpd24-httpd-0:2.4.23-122.jbcs.el7
Fixed · RHSA-2017:2709
JBoss Core Services on RHEL 7
jbcs-httpd24-openssl-1:1.0.2h-14.jbcs.el7
Fixed · RHSA-2017:2709
Red Hat Enterprise Linux 5 Supplementary
java-1.6.0-ibm-1:1.6.0.16.41-1jpp.1.el5_11
Fixed · RHSA-2017:0338
Red Hat Enterprise Linux 5 Supplementary
java-1.7.0-ibm-1:1.7.0.10.1-1jpp.1.el5_11
Fixed · RHSA-2017:0337
Red Hat Enterprise Linux 6
openssl-0:1.0.1e-48.el6_8.3
Fixed · RHSA-2016:1940
Red Hat Enterprise Linux 6 Supplementary
java-1.6.0-ibm-1:1.6.0.16.41-1jpp.1.el6_8
Fixed · RHSA-2017:0338
Red Hat Enterprise Linux 6 Supplementary
java-1.7.1-ibm-1:1.7.1.4.1-1jpp.1.el6_8
Fixed · RHSA-2017:0336
Red Hat Enterprise Linux 6 Supplementary
java-1.8.0-ibm-1:1.8.0.4.1-1jpp.1.el6_8
Fixed · RHSA-2017:0462
Red Hat Enterprise Linux 7
openssl-1:1.0.1e-51.el7_2.7
Fixed · RHSA-2016:1940
Red Hat Enterprise Linux 7
python-0:2.7.5-69.el7_5
Fixed · RHSA-2018:2123
Red Hat Enterprise Linux 7 Supplementary
java-1.7.1-ibm-1:1.7.1.4.1-1jpp.2.el7
Fixed · RHSA-2017:0336
Red Hat Enterprise Linux 7 Supplementary
java-1.8.0-ibm-1:1.8.0.4.1-1jpp.2.el7
Fixed · RHSA-2017:0462
Red Hat JBoss Core Services
n/a
Fixed · RHSA-2017:2708
Red Hat JBoss Enterprise Application Platform 6.4
openssl
Fixed · RHSA-2017:3239
Red Hat JBoss Enterprise Application Platform 6.4 for RHEL 6
httpd-0:2.2.26-57.ep6.el6
Fixed · RHSA-2017:3240
Red Hat JBoss Enterprise Application Platform 6.4 for RHEL 6
jbcs-httpd24-openssl-1:1.0.2h-14.jbcs.el6
Fixed · RHSA-2017:3240
Red Hat JBoss Enterprise Application Platform 6.4 for RHEL 6
mod_cluster-native-0:1.2.13-9.Final_redhat_2.ep6.el6
Fixed · RHSA-2017:3240
Red Hat JBoss Enterprise Application Platform 6.4 for RHEL 7
httpd22-0:2.2.26-58.ep6.el7
Fixed · RHSA-2017:3240
Red Hat JBoss Enterprise Application Platform 6.4 for RHEL 7
jbcs-httpd24-openssl-1:1.0.2h-14.jbcs.el7
Fixed · RHSA-2017:3240
Red Hat JBoss Enterprise Application Platform 6.4 for RHEL 7
mod_cluster-native-0:1.2.13-9.Final_redhat_2.ep6.el7
Fixed · RHSA-2017:3240
Red Hat JBoss Enterprise Web Server 2 for RHEL 6
httpd-0:2.2.26-57.ep6.el6
Fixed · RHSA-2017:3113
Red Hat JBoss Enterprise Web Server 2 for RHEL 6
jbcs-httpd24-openssl-1:1.0.2h-14.jbcs.el6
Fixed · RHSA-2017:3113
Red Hat JBoss Enterprise Web Server 2 for RHEL 6
mod_cluster-native-0:1.2.13-9.Final_redhat_2.ep6.el6
Fixed · RHSA-2017:3113
Red Hat JBoss Enterprise Web Server 2 for RHEL 6
tomcat6-0:6.0.41-19_patch_04.ep6.el6
Fixed · RHSA-2017:3113
Red Hat JBoss Enterprise Web Server 2 for RHEL 6
tomcat7-0:7.0.54-28_patch_05.ep6.el6
Fixed · RHSA-2017:3113
Red Hat JBoss Enterprise Web Server 2 for RHEL 7
httpd22-0:2.2.26-58.ep6.el7
Fixed · RHSA-2017:3113
Red Hat JBoss Enterprise Web Server 2 for RHEL 7
jbcs-httpd24-openssl-1:1.0.2h-14.jbcs.el7
Fixed · RHSA-2017:3113
Red Hat JBoss Enterprise Web Server 2 for RHEL 7
mod_cluster-native-0:1.2.13-9.Final_redhat_2.ep6.el7
Fixed · RHSA-2017:3113
Red Hat JBoss Enterprise Web Server 2 for RHEL 7
tomcat6-0:6.0.41-19_patch_04.ep6.el7
Fixed · RHSA-2017:3113
Red Hat JBoss Enterprise Web Server 2 for RHEL 7
tomcat7-0:7.0.54-28_patch_05.ep6.el7
Fixed · RHSA-2017:3113
Red Hat JBoss Web Server 2.1
n/a
Fixed · RHSA-2017:3114
Red Hat OpenShift Container Platform 3.11
openshift3/apb-base:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/apb-tools:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/automation-broker-apb:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/csi-attacher:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/csi-driver-registrar:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/csi-livenessprobe:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/csi-provisioner:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/grafana:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/jenkins-slave-base-rhel7:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/jenkins-slave-maven-rhel7:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/jenkins-slave-nodejs-rhel7:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/local-storage-provisioner:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/logging-fluentd:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/manila-provisioner:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/mariadb-apb:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/mediawiki-apb:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/mediawiki:v3.11.141-3
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/metrics-cassandra:v3.11.141-3
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/metrics-hawkular-metrics:v3.11.141-3
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/metrics-hawkular-openshift-agent:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/metrics-heapster:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/metrics-schema-installer:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/mysql-apb:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/node:v3.11.141-3
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/oauth-proxy:v3.11.141-1
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/oauth-proxy:v3.11.170-5
Fixed · RHSA-2020:0451
Red Hat OpenShift Container Platform 3.11
openshift3/ose-ansible-service-broker:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-ansible:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-cli:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-cluster-autoscaler:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-cluster-capacity:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-cluster-monitoring-operator:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-configmap-reloader:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-console:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-control-plane:v3.11.141-3
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-deployer:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-descheduler:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-docker-builder:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-docker-registry:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-efs-provisioner:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-egress-dns-proxy:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-egress-http-proxy:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-egress-router:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-haproxy-router:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-hyperkube:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-hypershift:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-keepalived-ipfailover:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-kube-rbac-proxy:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-kube-state-metrics:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-logging-curator5:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-logging-elasticsearch5:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-logging-eventrouter:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-logging-fluentd:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-logging-kibana5:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-metrics-cassandra:v3.11.141-3
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-metrics-hawkular-metrics:v3.11.141-3
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-metrics-hawkular-openshift-agent:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-metrics-heapster:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-metrics-schema-installer:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-metrics-server:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-node-problem-detector:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-node:v3.11.141-3
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-operator-lifecycle-manager:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-ovn-kubernetes:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-pod:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-prometheus-config-reloader:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-prometheus-operator:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-recycler:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-service-catalog:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-template-service-broker:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-tests:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose-web-console:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/ose:v3.11.141-3
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/postgresql-apb:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/prometheus-alertmanager:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/prometheus-node-exporter:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/prometheus:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/registry-console:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/snapshot-controller:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 3.11
openshift3/snapshot-provisioner:v3.11.141-2
Fixed · RHBA-2019:2581
Red Hat OpenShift Container Platform 4.1
openshift4/ose-oauth-proxy:v4.1.18-201909201915
Fixed · RHSA-2019:2859
Red Hat OpenShift Container Platform 4.5
openshift4/ose-console:v4.5.0-202009201759.p0
Fixed · RHSA-2020:3842
Red Hat OpenShift Container Platform 4.6
openshift4/ose-etcd:v4.6.0-202101300140.p0
Fixed · RHSA-2021:0308
Red Hat OpenShift Container Platform 4.8
openshift4/ose-hyperkube:v4.8.0-202107161820.p0.git.051ac4f.assembly.stream
Fixed · RHSA-2021:2438
Red Hat OpenShift Container Platform 4.8
openshift4/ose-machine-config-operator:v4.8.0-202107011817.p0.git.29813c8.assembly.stream
Fixed · RHSA-2021:2438
Red Hat Quay 3
n/a
Fixed · RHSA-2019:1245
Red Hat Satellite 5.6
java-1.7.1-ibm-1:1.7.1.4.1-1jpp.1.el6_8
Fixed · RHSA-2017:1216
Red Hat Satellite 5.7
java-1.7.1-ibm-1:1.7.1.4.1-1jpp.1.el6_8
Fixed · RHSA-2017:1216
Red Hat Enterprise Linux 5
gnutls
Not affected
Red Hat Enterprise Linux 5
nss
Will not fix
Red Hat Enterprise Linux 5
openssl
Will not fix
Red Hat Enterprise Linux 5
openssl097a
Will not fix
Red Hat Enterprise Linux 6
gnutls
Not affected
Red Hat Enterprise Linux 6
nss
Will not fix
Red Hat Enterprise Linux 6
openssl098e
Will not fix
Red Hat Enterprise Linux 7
gnutls
Not affected
Red Hat Enterprise Linux 7
nss
Will not fix
Red Hat Enterprise Linux 7
openssl098e
Will not fix
Red Hat JBoss Enterprise Web Server 1
openssl
Will not fix
Red Hat JBoss Enterprise Web Server 3
openssl
Will not fix
Red Hat OpenShift Container Platform 4
openshift4/ose-kube-rbac-proxy-rhel9
Not affected
Red Hat OpenShift Container Platform 4
openshift4/ose-openstack-cinder-csi-driver-rhel9-operator
Affected
Red Hat OpenStack Platform 10 (Newton)
opendaylight
Will not fix
Red Hat OpenStack Platform 11 (Ocata)
opendaylight
Will not fix
Red Hat OpenStack Platform 8 (Liberty)
opendaylight
Will not fix
Red Hat OpenStack Platform 9 (Mitaka)
opendaylight
Will not fix
| Product | Package | State | Advisory |
|---|---|---|---|
| JBoss Core Services on RHEL 6 | jbcs-httpd24-httpd-0:2.4.23-122.jbcs.el6 | Fixed | RHSA-2017:2710 |
| JBoss Core Services on RHEL 6 | jbcs-httpd24-openssl-1:1.0.2h-14.jbcs.el6 | Fixed | RHSA-2017:2710 |
| JBoss Core Services on RHEL 7 | jbcs-httpd24-httpd-0:2.4.23-122.jbcs.el7 | Fixed | RHSA-2017:2709 |
| JBoss Core Services on RHEL 7 | jbcs-httpd24-openssl-1:1.0.2h-14.jbcs.el7 | Fixed | RHSA-2017:2709 |
| Red Hat Enterprise Linux 5 Supplementary | java-1.6.0-ibm-1:1.6.0.16.41-1jpp.1.el5_11 | Fixed | RHSA-2017:0338 |
| Red Hat Enterprise Linux 5 Supplementary | java-1.7.0-ibm-1:1.7.0.10.1-1jpp.1.el5_11 | Fixed | RHSA-2017:0337 |
| Red Hat Enterprise Linux 6 | openssl-0:1.0.1e-48.el6_8.3 | Fixed | RHSA-2016:1940 |
| Red Hat Enterprise Linux 6 Supplementary | java-1.6.0-ibm-1:1.6.0.16.41-1jpp.1.el6_8 | Fixed | RHSA-2017:0338 |
| Red Hat Enterprise Linux 6 Supplementary | java-1.7.1-ibm-1:1.7.1.4.1-1jpp.1.el6_8 | Fixed | RHSA-2017:0336 |
| Red Hat Enterprise Linux 6 Supplementary | java-1.8.0-ibm-1:1.8.0.4.1-1jpp.1.el6_8 | Fixed | RHSA-2017:0462 |
| Red Hat Enterprise Linux 7 | openssl-1:1.0.1e-51.el7_2.7 | Fixed | RHSA-2016:1940 |
| Red Hat Enterprise Linux 7 | python-0:2.7.5-69.el7_5 | Fixed | RHSA-2018:2123 |
| Red Hat Enterprise Linux 7 Supplementary | java-1.7.1-ibm-1:1.7.1.4.1-1jpp.2.el7 | Fixed | RHSA-2017:0336 |
| Red Hat Enterprise Linux 7 Supplementary | java-1.8.0-ibm-1:1.8.0.4.1-1jpp.2.el7 | Fixed | RHSA-2017:0462 |
| Red Hat JBoss Core Services | n/a | Fixed | RHSA-2017:2708 |
| Red Hat JBoss Enterprise Application Platform 6.4 | openssl | Fixed | RHSA-2017:3239 |
| Red Hat JBoss Enterprise Application Platform 6.4 for RHEL 6 | httpd-0:2.2.26-57.ep6.el6 | Fixed | RHSA-2017:3240 |
| Red Hat JBoss Enterprise Application Platform 6.4 for RHEL 6 | jbcs-httpd24-openssl-1:1.0.2h-14.jbcs.el6 | Fixed | RHSA-2017:3240 |
| Red Hat JBoss Enterprise Application Platform 6.4 for RHEL 6 | mod_cluster-native-0:1.2.13-9.Final_redhat_2.ep6.el6 | Fixed | RHSA-2017:3240 |
| Red Hat JBoss Enterprise Application Platform 6.4 for RHEL 7 | httpd22-0:2.2.26-58.ep6.el7 | Fixed | RHSA-2017:3240 |
| Red Hat JBoss Enterprise Application Platform 6.4 for RHEL 7 | jbcs-httpd24-openssl-1:1.0.2h-14.jbcs.el7 | Fixed | RHSA-2017:3240 |
| Red Hat JBoss Enterprise Application Platform 6.4 for RHEL 7 | mod_cluster-native-0:1.2.13-9.Final_redhat_2.ep6.el7 | Fixed | RHSA-2017:3240 |
| Red Hat JBoss Enterprise Web Server 2 for RHEL 6 | httpd-0:2.2.26-57.ep6.el6 | Fixed | RHSA-2017:3113 |
| Red Hat JBoss Enterprise Web Server 2 for RHEL 6 | jbcs-httpd24-openssl-1:1.0.2h-14.jbcs.el6 | Fixed | RHSA-2017:3113 |
| Red Hat JBoss Enterprise Web Server 2 for RHEL 6 | mod_cluster-native-0:1.2.13-9.Final_redhat_2.ep6.el6 | Fixed | RHSA-2017:3113 |
| Red Hat JBoss Enterprise Web Server 2 for RHEL 6 | tomcat6-0:6.0.41-19_patch_04.ep6.el6 | Fixed | RHSA-2017:3113 |
| Red Hat JBoss Enterprise Web Server 2 for RHEL 6 | tomcat7-0:7.0.54-28_patch_05.ep6.el6 | Fixed | RHSA-2017:3113 |
| Red Hat JBoss Enterprise Web Server 2 for RHEL 7 | httpd22-0:2.2.26-58.ep6.el7 | Fixed | RHSA-2017:3113 |
| Red Hat JBoss Enterprise Web Server 2 for RHEL 7 | jbcs-httpd24-openssl-1:1.0.2h-14.jbcs.el7 | Fixed | RHSA-2017:3113 |
| Red Hat JBoss Enterprise Web Server 2 for RHEL 7 | mod_cluster-native-0:1.2.13-9.Final_redhat_2.ep6.el7 | Fixed | RHSA-2017:3113 |
| Red Hat JBoss Enterprise Web Server 2 for RHEL 7 | tomcat6-0:6.0.41-19_patch_04.ep6.el7 | Fixed | RHSA-2017:3113 |
| Red Hat JBoss Enterprise Web Server 2 for RHEL 7 | tomcat7-0:7.0.54-28_patch_05.ep6.el7 | Fixed | RHSA-2017:3113 |
| Red Hat JBoss Web Server 2.1 | n/a | Fixed | RHSA-2017:3114 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/apb-base:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/apb-tools:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/automation-broker-apb:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/csi-attacher:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/csi-driver-registrar:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/csi-livenessprobe:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/csi-provisioner:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/grafana:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/jenkins-slave-base-rhel7:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/jenkins-slave-maven-rhel7:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/jenkins-slave-nodejs-rhel7:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/local-storage-provisioner:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/logging-fluentd:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/manila-provisioner:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/mariadb-apb:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/mediawiki-apb:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/mediawiki:v3.11.141-3 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/metrics-cassandra:v3.11.141-3 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/metrics-hawkular-metrics:v3.11.141-3 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/metrics-hawkular-openshift-agent:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/metrics-heapster:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/metrics-schema-installer:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/mysql-apb:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/node:v3.11.141-3 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/oauth-proxy:v3.11.141-1 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/oauth-proxy:v3.11.170-5 | Fixed | RHSA-2020:0451 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-ansible-service-broker:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-ansible:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-cli:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-cluster-autoscaler:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-cluster-capacity:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-cluster-monitoring-operator:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-configmap-reloader:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-console:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-control-plane:v3.11.141-3 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-deployer:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-descheduler:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-docker-builder:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-docker-registry:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-efs-provisioner:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-egress-dns-proxy:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-egress-http-proxy:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-egress-router:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-haproxy-router:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-hyperkube:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-hypershift:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-keepalived-ipfailover:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-kube-rbac-proxy:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-kube-state-metrics:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-logging-curator5:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-logging-elasticsearch5:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-logging-eventrouter:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-logging-fluentd:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-logging-kibana5:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-metrics-cassandra:v3.11.141-3 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-metrics-hawkular-metrics:v3.11.141-3 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-metrics-hawkular-openshift-agent:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-metrics-heapster:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-metrics-schema-installer:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-metrics-server:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-node-problem-detector:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-node:v3.11.141-3 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-operator-lifecycle-manager:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-ovn-kubernetes:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-pod:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-prometheus-config-reloader:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-prometheus-operator:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-recycler:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-service-catalog:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-template-service-broker:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-tests:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose-web-console:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/ose:v3.11.141-3 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/postgresql-apb:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/prometheus-alertmanager:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/prometheus-node-exporter:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/prometheus:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/registry-console:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/snapshot-controller:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 3.11 | openshift3/snapshot-provisioner:v3.11.141-2 | Fixed | RHBA-2019:2581 |
| Red Hat OpenShift Container Platform 4.1 | openshift4/ose-oauth-proxy:v4.1.18-201909201915 | Fixed | RHSA-2019:2859 |
| Red Hat OpenShift Container Platform 4.5 | openshift4/ose-console:v4.5.0-202009201759.p0 | Fixed | RHSA-2020:3842 |
| Red Hat OpenShift Container Platform 4.6 | openshift4/ose-etcd:v4.6.0-202101300140.p0 | Fixed | RHSA-2021:0308 |
| Red Hat OpenShift Container Platform 4.8 | openshift4/ose-hyperkube:v4.8.0-202107161820.p0.git.051ac4f.assembly.stream | Fixed | RHSA-2021:2438 |
| Red Hat OpenShift Container Platform 4.8 | openshift4/ose-machine-config-operator:v4.8.0-202107011817.p0.git.29813c8.assembly.stream | Fixed | RHSA-2021:2438 |
| Red Hat Quay 3 | n/a | Fixed | RHSA-2019:1245 |
| Red Hat Satellite 5.6 | java-1.7.1-ibm-1:1.7.1.4.1-1jpp.1.el6_8 | Fixed | RHSA-2017:1216 |
| Red Hat Satellite 5.7 | java-1.7.1-ibm-1:1.7.1.4.1-1jpp.1.el6_8 | Fixed | RHSA-2017:1216 |
| Red Hat Enterprise Linux 5 | gnutls | Not affected | n/a |
| Red Hat Enterprise Linux 5 | nss | Will not fix | n/a |
| Red Hat Enterprise Linux 5 | openssl | Will not fix | n/a |
| Red Hat Enterprise Linux 5 | openssl097a | Will not fix | n/a |
| Red Hat Enterprise Linux 6 | gnutls | Not affected | n/a |
| Red Hat Enterprise Linux 6 | nss | Will not fix | n/a |
| Red Hat Enterprise Linux 6 | openssl098e | Will not fix | n/a |
| Red Hat Enterprise Linux 7 | gnutls | Not affected | n/a |
| Red Hat Enterprise Linux 7 | nss | Will not fix | n/a |
| Red Hat Enterprise Linux 7 | openssl098e | Will not fix | n/a |
| Red Hat JBoss Enterprise Web Server 1 | openssl | Will not fix | n/a |
| Red Hat JBoss Enterprise Web Server 3 | openssl | Will not fix | n/a |
| Red Hat OpenShift Container Platform 4 | openshift4/ose-kube-rbac-proxy-rhel9 | Not affected | n/a |
| Red Hat OpenShift Container Platform 4 | openshift4/ose-openstack-cinder-csi-driver-rhel9-operator | Affected | n/a |
| Red Hat OpenStack Platform 10 (Newton) | opendaylight | Will not fix | n/a |
| Red Hat OpenStack Platform 11 (Ocata) | opendaylight | Will not fix | n/a |
| Red Hat OpenStack Platform 8 (Liberty) | opendaylight | Will not fix | n/a |
| Red Hat OpenStack Platform 9 (Mitaka) | opendaylight | Will not fix | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
OpenSSL security update RHSA-2016:1940 mitigates this issue by lowering priority of DES cipher suites so they are not preferred over cipher suites using AES. For compatibility reasons, DES cipher suites remain enabled by default and included in the set of cipher suites identified by the HIGH cipher string. Future updates may move them to MEDIUM or not enable them by default. NSS addressed this issue by implementing limits on the amount of plain text which can be encrypted by using the same key. Once the limit is reached, the keys will need to be re-negotiated manually. This change will be available in nss-3.27. GnuTLS is not affected by this issue, since it prioritizes AES before 3DES in the cipher list.
Red Hat mitigation
1.SSL/TLS configurations should prefer AES over DES. Versions of OpenSSL shipped with Red Hat Enterprise Linux 6 and 7 already do so. In the version of OpenSSL shipped with Red Hat Enterprise Linux 5, 3DES is listed below the AES-256 cipher and above the AES-128 cipher, therefore AES-256 based ciphersuite should not be disabled on the server. 2. Servers using OpenSSL, should not disable AES-128 and AES-256 ciphersuites. Versions of Apache shipped with Red Hat Enterprise Linux use the default cipher string, in which AES is preferred over DES/3DES based ciphersuites. For JBoss Middleware, and Java mitigations, please review this knowledge base article: https://access.redhat.com/articles/2598471 This can be mitigated on OpenShift Container Platform (OCP) by disabling the vulnerable TLS cipher suite in the applicable component. TLS configuration options for OCP are described here: https://access.redhat.com/articles/5348961
Metrics
No CVSS v4.0 score for this CVE.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
AV:N/AC:L/Au:N/C:P/I:N/A:N
This CVE is not in the KEV list.
CISA SSVC (Vulnrichment)
Stakeholder-Specific Vulnerability Categorization from CISA ADP.
Exploitation
PoCAutomatable
YesTechnical Impact
PartialDecision
n/aAssessed May 29, 2026 · SSVC 2.0.3
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (59 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 94.70% (0.94697) | 99.86th | v5 (v2026.06.15) |
| Jun 15, 2026 | 95.71% (0.95707) | 99.86th | v5 (v2026.06.15) |
| Jun 1, 2026 | 40.99% (0.40993) | 97.45th | v4 (v2025.03.14) |
| Apr 28, 2026 | 37.75% (0.37753) | 97.22th | v4 (v2025.03.14) |
| Apr 21, 2026 | 41.58% (0.41582) | 97.42th | v4 (v2025.03.14) |
| Mar 4, 2026 | 40.02% (0.40016) | 97.25th | v4 (v2025.03.14) |
| Mar 1, 2026 | 54.78% (0.54785) | 98.00th | v4 (v2025.03.14) |
| Feb 4, 2026 | 40.02% (0.40016) | 97.21th | v4 (v2025.03.14) |
| Feb 1, 2026 | 54.78% (0.54785) | 97.98th | v4 (v2025.03.14) |
| Jan 4, 2026 | 40.02% (0.40016) | 97.19th | v4 (v2025.03.14) |
| Jan 1, 2026 | 55.35% (0.55348) | 97.98th | v4 (v2025.03.14) |
| Dec 28, 2025 | 40.60% (0.40603) | 97.21th | v4 (v2025.03.14) |
| Dec 27, 2025 | 31.39% (0.31387) | 96.64th | v4 (v2025.03.14) |
| Dec 4, 2025 | 40.02% (0.40016) | 97.16th | v4 (v2025.03.14) |
| Dec 1, 2025 | 55.35% (0.55348) | 97.96th | v4 (v2025.03.14) |
| Nov 21, 2025 | 40.60% (0.40603) | 97.19th | v4 (v2025.03.14) |
| Nov 4, 2025 | 37.75% (0.37753) | 97.01th | v4 (v2025.03.14) |
| Nov 1, 2025 | 52.57% (0.52567) | 97.81th | v4 (v2025.03.14) |
| Oct 30, 2025 | 37.75% (0.37753) | 97.02th | v4 (v2025.03.14) |
| Oct 28, 2025 | 41.58% (0.41582) | 97.24th | v4 (v2025.03.14) |
| Oct 27, 2025 | 29.32% (0.29315) | 96.38th | v4 (v2025.03.14) |
| Oct 25, 2025 | 41.58% (0.41582) | 97.24th | v4 (v2025.03.14) |
| Oct 20, 2025 | 38.33% (0.38333) | 97.04th | v4 (v2025.03.14) |
| Oct 4, 2025 | 40.02% (0.40016) | 97.22th | v4 (v2025.03.14) |
| Oct 1, 2025 | 54.78% (0.54785) | 97.98th | v4 (v2025.03.14) |
| Sep 15, 2025 | 31.39% (0.31387) | 96.63th | v4 (v2025.03.14) |
| Sep 6, 2025 | 28.79% (0.28793) | 96.39th | v4 (v2025.03.14) |
| Sep 4, 2025 | 30.85% (0.30847) | 96.59th | v4 (v2025.03.14) |
| Sep 1, 2025 | 42.05% (0.42052) | 97.37th | v4 (v2025.03.14) |
| Aug 4, 2025 | 30.85% (0.30847) | 96.55th | v4 (v2025.03.14) |
| Aug 3, 2025 | 42.05% (0.42052) | 97.34th | v4 (v2025.03.14) |
| Aug 1, 2025 | 40.35% (0.40353) | 97.25th | v4 (v2025.03.14) |
| Jul 30, 2025 | 29.32% (0.29315) | 96.40th | v4 (v2025.03.14) |
| Jul 29, 2025 | 41.58% (0.41582) | 97.27th | v4 (v2025.03.14) |
| Jul 17, 2025 | 37.75% (0.37753) | 97.03th | v4 (v2025.03.14) |
| Jul 4, 2025 | 40.02% (0.40016) | 97.16th | v4 (v2025.03.14) |
| Jul 1, 2025 | 54.78% (0.54785) | 97.90th | v4 (v2025.03.14) |
| Jun 4, 2025 | 40.02% (0.40016) | 97.14th | v4 (v2025.03.14) |
| Jun 1, 2025 | 54.78% (0.54785) | 97.89th | v4 (v2025.03.14) |
| May 4, 2025 | 40.02% (0.40016) | 97.11th | v4 (v2025.03.14) |
| May 1, 2025 | 54.78% (0.54785) | 97.88th | v4 (v2025.03.14) |
| Mar 30, 2025 | 40.60% (0.40603) | 97.08th | v4 (v2025.03.14) |
| Mar 29, 2025 | 74.68% (0.74684) | 98.51th | v4 (v2025.03.14) |
| Mar 28, 2025 | 40.60% (0.40603) | 97.08th | v4 (v2025.03.14) |
| Mar 27, 2025 | 74.68% (0.74684) | 98.75th | v4 (v2025.03.14) |
| Mar 26, 2025 | 40.60% (0.40603) | 97.04th | v4 (v2025.03.14) |
| Mar 24, 2025 | 38.33% (0.38333) | 96.91th | v4 (v2025.03.14) |
| Mar 20, 2025 | 40.60% (0.40603) | 97.11th | v4 (v2025.03.14) |
| Mar 19, 2025 | 74.68% (0.74684) | 98.77th | v4 (v2025.03.14) |
| Mar 17, 2025 | 40.60% (0.40603) | 97.04th | v4 (v2025.03.14) |
| Dec 17, 2024 | 3.98% (0.03984) | 91.95th | v3 (v2023.03.01) |
| Apr 19, 2024 | 0.53% (0.00528) | 76.79th | v3 (v2023.03.01) |
| Feb 8, 2024 | 0.55% (0.00547) | 76.76th | v3 (v2023.03.01) |
| Jul 8, 2023 | 0.55% (0.00547) | 74.33th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.44% (0.00439) | 70.80th | v3 (v2023.03.01) |
| Mar 6, 2023 | 34.50% (0.34498) | 97.71th | v2 (v2022.01.01) |
| Feb 13, 2023 | 34.50% (0.34498) | 97.70th | v2 (v2022.01.01) |
| Feb 3, 2023 | 24.19% (0.24189) | 96.75th | v2 (v2022.01.01) |
| Feb 4, 2022 | 34.50% (0.34498) | 96.69th | v2 (v2022.01.01) |
References (141)
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10759 Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-09/msg00022.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-09/msg00023.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-09/msg00024.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-09/msg00031.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00005.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00011.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00012.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00013.html vendor-advisoryThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00021.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00029.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2017-01/msg00068.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2017-02/msg00003.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2017-02/msg00023.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2017-02/msg00028.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2017-02/msg00032.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2017-05/msg00076.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2017-10/msg00010.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2017-10/msg00011.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2018-02/msg00032.html vendor-advisoryMailing ListThird Party Advisory
- http://packetstormsecurity.com/files/142756/IBM-Informix-Dynamic-Server-DLL-Injection-Code-Execution.html Third Party AdvisoryVDB Entry
- http://rhn.redhat.com/errata/RHSA-2017-0336.html vendor-advisoryThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2017-0337.html vendor-advisoryThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2017-0338.html vendor-advisoryThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2017-0462.html vendor-advisoryThird Party Advisory
- http://seclists.org/fulldisclosure/2017/Jul/31 mailing-listMailing ListThird Party Advisory
- http://seclists.org/fulldisclosure/2017/May/105 mailing-listMailing ListThird Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=nas8N1021697 Third Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21991482 Third Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21995039 Third Party Advisory
- http://www.debian.org/security/2016/dsa-3673 vendor-advisoryThird Party Advisory
- http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20170322-01-openssl-en Third Party Advisory
- http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html PatchThird Party Advisory
- http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html PatchThird Party Advisory
- http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html PatchThird Party Advisory
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html PatchThird Party Advisory
- http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html PatchThird Party Advisory
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/ovmbulletinoct2016-3090547.html Third Party Advisory
- http://www.securityfocus.com/archive/1/539885/100/0/threaded mailing-listThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/archive/1/540341/100/0/threaded mailing-listThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/archive/1/541104/100/0/threaded mailing-listThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/archive/1/542005/100/0/threaded mailing-listThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/archive/1/archive/1/539885/100/0/threaded mailing-listThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/archive/1/archive/1/540129/100/0/threaded mailing-listThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/archive/1/archive/1/540341/100/0/threaded mailing-listThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/archive/1/archive/1/541104/100/0/threaded mailing-listThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/archive/1/archive/1/542005/100/0/threaded mailing-listThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/bid/92630 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/bid/95568 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1036696 vdb-entryThird Party AdvisoryVDB Entry
- http://www.splunk.com/view/SP-CAAAPSV Third Party Advisory
- http://www.splunk.com/view/SP-CAAAPUE Third Party Advisory
- http://www.ubuntu.com/usn/USN-3087-1 vendor-advisoryThird Party Advisory
- http://www.ubuntu.com/usn/USN-3087-2 vendor-advisoryThird Party Advisory
- http://www.ubuntu.com/usn/USN-3179-1 vendor-advisoryThird Party Advisory
- http://www.ubuntu.com/usn/USN-3194-1 vendor-advisoryThird Party Advisory
- http://www.ubuntu.com/usn/USN-3198-1 vendor-advisoryThird Party Advisory
- http://www.ubuntu.com/usn/USN-3270-1 vendor-advisoryThird Party Advisory
- http://www.ubuntu.com/usn/USN-3372-1 vendor-advisoryThird Party Advisory
- https://access.redhat.com/articles/2548661 MitigationThird Party Advisory
- https://access.redhat.com/errata/RHSA-2016:1940
- https://access.redhat.com/errata/RHSA-2017:1216 vendor-advisoryThird Party Advisory
- https://access.redhat.com/errata/RHSA-2017:2708 vendor-advisoryThird Party Advisory
- https://access.redhat.com/errata/RHSA-2017:2709 vendor-advisoryThird Party Advisory
- https://access.redhat.com/errata/RHSA-2017:2710 vendor-advisoryThird Party Advisory
- https://access.redhat.com/errata/RHSA-2017:3113 vendor-advisoryThird Party Advisory
- https://access.redhat.com/errata/RHSA-2017:3114 vendor-advisoryThird Party Advisory
- https://access.redhat.com/errata/RHSA-2017:3239 vendor-advisoryThird Party Advisory
- https://access.redhat.com/errata/RHSA-2017:3240 vendor-advisoryThird Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2123 vendor-advisoryThird Party Advisory
- https://access.redhat.com/errata/RHSA-2019:1245 vendor-advisoryThird Party Advisory
- https://access.redhat.com/errata/RHSA-2019:2859 vendor-advisoryThird Party Advisory
- https://access.redhat.com/errata/RHSA-2020:0451 vendor-advisoryThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2016-2183 Vendor Advisory
- https://access.redhat.com/security/cve/cve-2016-2183 Third Party Advisory
- https://blog.cryptographyengineering.com/2016/08/24/attack-of-week-64-bit-ciphers-in-tls/ Press/Media CoverageTechnical DescriptionThird Party Advisory
- https://bto.bluecoat.com/security-advisory/sa133 Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1369383 Issue TrackingThird Party Advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-412672.pdf
- https://github.com/ssllabs/ssllabs-scan/issues/387#issuecomment-242514633 Third Party Advisory
- https://h20566.www2.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-c05302448 Third Party Advisory
- https://h20566.www2.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-c05369403 Third Party Advisory
- https://h20566.www2.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-c05369415 Third Party Advisory
- https://h20566.www2.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-c05385680 Third Party Advisory
- https://h20566.www2.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-c05390722 Third Party Advisory
- https://h20566.www2.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-c05390849 Third Party Advisory
- https://h20566.www2.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbgn03765en_us Third Party Advisory
- https://h20566.www2.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbux03725en_us Third Party Advisory
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05302448 Third Party Advisory
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05309984 Third Party Advisory
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05323116 Third Party Advisory
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05349499 Third Party Advisory
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05356388 Third Party Advisory
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05369403 Third Party Advisory
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05369415 Third Party Advisory
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05385680 Third Party Advisory
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05390722 Third Party Advisory
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05390849 Third Party Advisory
- https://ics-cert.us-cert.gov/advisories/ICSMA-18-058-02 Third Party AdvisoryUS Government Resource
- https://kb.pulsesecure.net/articles/Pulse_Security_Advisories/SA40312 Third Party Advisory
- https://kc.mcafee.com/corporate/index?page=content&id=SB10171 Third Party Advisory
- https://kc.mcafee.com/corporate/index?page=content&id=SB10186 Third Party Advisory
- https://kc.mcafee.com/corporate/index?page=content&id=SB10197 Third Party Advisory
- https://kc.mcafee.com/corporate/index?page=content&id=SB10215 Third Party Advisory
- https://kc.mcafee.com/corporate/index?page=content&id=SB10310 Third Party Advisory
- https://nakedsecurity.sophos.com/2016/08/25/anatomy-of-a-cryptographic-collision-the-sweet32-attack/ Press/Media CoverageTechnical DescriptionThird Party Advisory
- https://nodejs.org/en/blog/vulnerability/september-2016-security-releases/ Third Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2016-2183
- https://seclists.org/bugtraq/2018/Nov/21 mailing-listMailing ListThird Party Advisory
- https://security.gentoo.org/glsa/201612-16 vendor-advisoryThird Party Advisory
- https://security.gentoo.org/glsa/201701-65 vendor-advisoryThird Party Advisory
- https://security.gentoo.org/glsa/201707-01 vendor-advisoryThird Party Advisory
- https://security.netapp.com/advisory/ntap-20160915-0001/ Third Party Advisory
- https://security.netapp.com/advisory/ntap-20170119-0001/ Third Party Advisory
- https://softwaresupport.softwaregrp.com/document/-/facetsearch/document/KM03158613 Third Party Advisory
- https://softwaresupport.softwaregrp.com/document/-/facetsearch/document/KM03286178 Third Party Advisory
- https://support.f5.com/csp/article/K13167034 Third Party Advisory
- https://sweet32.info/ Technical DescriptionThird Party Advisory
- https://wiki.opendaylight.org/view/Security_Advisories Third Party Advisory
- https://www.arista.com/en/support/advisories-notices/security-advisories/1749-security-advisory-24 Third Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2016-2183
- https://www.exploit-db.com/exploits/42091/ exploitThird Party AdvisoryVDB Entry
- https://www.ietf.org/mail-archive/web/tls/current/msg04560.html mailing-listMailing ListThird Party Advisory
- https://www.mitel.com/en-ca/support/security-advisories/mitel-product-security-advisory-17-0008 Third Party Advisory
- https://www.nccgroup.trust/us/about-us/newsroom-and-events/blog/2016/august/new-practical-attacks-on-64-bit-block-ciphers-3des-blowfish/ Press/Media CoverageTechnical DescriptionThird Party Advisory
- https://www.openssl.org/blog/blog/2016/08/24/sweet32/ MitigationPress/Media CoverageThird Party Advisory
- https://www.oracle.com/security-alerts/cpuapr2020.html Third Party Advisory
- https://www.oracle.com/security-alerts/cpujan2020.html Third Party Advisory
- https://www.oracle.com/security-alerts/cpujul2020.html Third Party Advisory
- https://www.oracle.com/security-alerts/cpuoct2020.html Third Party Advisory
- https://www.oracle.com/security-alerts/cpuoct2021.html Third Party Advisory
- https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html PatchThird Party Advisory
- https://www.sigsac.org/ccs/CCS2016/accepted-papers/ Third Party Advisory
- https://www.tenable.com/security/tns-2016-16 Third Party Advisory
- https://www.tenable.com/security/tns-2016-20 Third Party Advisory
- https://www.tenable.com/security/tns-2016-21 Third Party Advisory
- https://www.tenable.com/security/tns-2017-09 Third Party Advisory
- https://www.teskalabs.com/blog/teskalabs-bulletin-160826-seacat-sweet32-issue Third Party Advisory
- https://www.vicarius.io/vsociety/posts/cve-2016-2183-detection-sweet32-vulnerability
- https://www.vicarius.io/vsociety/posts/cve-2016-2183-mitigate-sweet32-vulnerability
Change history (0)
No recorded changes yet.