OpenSSL released updates 1.1.0d and 1.0.2k to address several Moderate-severity defects, including CVE-2017-3731, an integer-underflow out-of-bounds read that lets specially truncated TLS packets crash affected 32-bit clients or servers using vulnerable cipher suites such as RC4-MD5. The releases also addressed CVE-2017-3730, in which malicious DHE or ECDHE parameters can trigger a NULL-pointer dereference in clients, and CVE-2017-3732, a carry-propagation flaw in x86_64 Montgomery squaring that can yield incorrect cryptographic results. Exploiting the latter against RSA or DSA is considered highly impractical; a Diffie-Hellman attack is more feasible only under restrictive conditions involving unpatched systems, persistent shared DH parameters, and substantial resources.
Red Hat shipped updated OpenSSL packages for RHEL 6 and 7 through RHSA-2017:0286, remediating CVE-2017-3731 and CVE-2016-8610. The latter allows unauthenticated attackers to send large volumes of malformed plaintext TLS/SSL ALERT messages during handshakes, consuming server CPU and preventing new connections; Nginx deployments were identified as affected, while Apache HTTP Server was not. Organizations should apply the vendor updates, restart all services linked to OpenSSL or reboot hosts, disable RC4-MD5 where updates cannot be immediately deployed, and retire unsupported OpenSSL 1.0.1, 1.0.0, and 0.9.8 installations.

See affected versions and whether adversaries are exploiting it.
15 events from the most recent confirmed update back to the earliest known activity.
Red Hat issued RHSA-2018:2568 for java-1.8.0-ibm in the RHEL 7 Supplementary repository, upgrading IBM Java SE 8 to 8 SR5-FP20. The update remediated nine flaws, including CVE-2017-3732 and other IBM JDK, OpenJDK/Oracle JDK, and OpenSSL vulnerabilities; administrators were advised to restart IBM Java instances.
Red Hat issued RHSA-2017:1413 and RHSA-2017:1414 for affected JBoss Core Services packages on RHEL 7 and RHEL 6, respectively, addressing CVE-2016-8610.
Red Hat issued RHSA-2017:0574 to fix affected GnuTLS packages in Red Hat Enterprise Linux 6 for the malformed ALERT-packet denial-of-service issue.
Red Hat issued RHSA-2017:0286 for RHEL 6 and 7, updating OpenSSL to address CVE-2017-3731 and the TLS/SSL ALERT-packet denial-of-service vulnerability CVE-2016-8610.
Support for OpenSSL versions 0.9.8 and 1.0.0 ended, leaving them without further security updates.
OpenSSL removed DHE key reuse through commits c5b831f for 1.0.2 and ffaef3f for 1.1.0, a change later noted in the CVE-2017-3732 advisory correction.
Red Hat issued RHSA-2018:2186 for affected JBoss Core Services components on RHEL 6, addressing both the truncated-packet crash flaw and the x86_64 Montgomery-squaring flaw.
Red Hat addressed CVE-2017-3736, an x86_64 Montgomery-squaring carry-propagation flaw affecting systems with BMI1, BMI2, and ADX-capable processors, through advisories for RHEL, JBoss Core Services, RHEL Supplementary, and Red Hat Satellite 5.8. OpenSSL upstream fixed the separate vulnerability in commit 668a709a8d7ea374ee72ad2d43ac72ec60a80eee.
Red Hat issued RHSA-2017:1659 to update an affected OpenSSL package in Red Hat JBoss Enterprise Application Platform 6.4.
OpenSSL corrected its advisory to clarify that DHE key reuse had been removed in December 2015 in both the 1.0.2 and 1.1.0 branches.
OpenSSL published an advisory disclosing CVE-2017-3730, CVE-2017-3731, and CVE-2017-3732, and recommended upgrades to OpenSSL 1.1.0d and 1.0.2k for affected users.
The OSS-Fuzz project reported the x86_64 Montgomery-squaring carry-propagation flaw that could produce incorrect cryptographic results in OpenSSL.
Guido Vranken reported that malicious DHE or ECDHE key-exchange parameters could trigger a NULL-pointer dereference and denial-of-service crash in OpenSSL 1.1.0 clients.
Support for OpenSSL 1.0.1 ended, so the version no longer received security updates.
Robert Święcki of Google reported the truncated-packet integer-underflow flaw, which can cause an out-of-bounds read and crash on affected 32-bit SSL/TLS systems.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
14 references tracked. Mallory keeps watching after this page renders.
cve.org
Open sourcerhn.redhat.com
Open sourcerhn.redhat.com
Open sourcecve.org
Open sourceredhat.com
Open sourcebugzilla.redhat.com
Open sourceopenssl.org
Open sourceoracle.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.