CVE-2009-3555 is a TLS/SSL renegotiation vulnerability that lets a man-in-the-middle attacker prepend unauthenticated, chosen plaintext to a connection before renegotiation. Because vulnerable TLS and SSL implementations do not cryptographically bind the renegotiation handshake to the original session, the injected data can be processed in the authenticated post-renegotiation context. The flaw affects HTTPS and other TLS-protected protocols, but does not allow an attacker to decrypt or modify traffic after a session has been negotiated.
Affected software included older versions of Microsoft IIS, Apache mod_ssl, OpenSSL, GnuTLS, Mozilla NSS, Cisco products, and Java's SunJSSE. Java mitigated the issue first by disabling renegotiation by default and later by implementing RFC 5746 secure renegotiation; its interoperable mode permits legacy initial connections while blocking unsafe legacy renegotiation. Organizations should ensure TLS stacks support RFC 5746 and disable or restrict insecure renegotiation where legacy compatibility is not required.

See affected versions and whether adversaries are exploiting it.
4 events from the most recent confirmed update back to the earliest known activity.
The Java SE and Java for Business Critical Patch Update included SunJSSE Phase 1 mitigation, which disabled SSL/TLS renegotiation by default.
CVE-2009-3555 was published for the TLS/SSL renegotiation vulnerability, also known as the Project Mogul plaintext-injection issue. Vulnerable implementations fail to cryptographically bind renegotiation handshakes to the existing connection.
Marsh Ray disclosed the TLS/SSL renegotiation design issue, which permits a man-in-the-middle attacker to inject chosen plaintext as a prefix of a TLS connection.
SunJSSE Phase 2 added RFC 5746 secure-renegotiation support in JDK/JRE 6 Update 22, 5.0 Update 26, and 1.4.2 Update 28. The default interoperable mode permits legacy initial connections but prevents unsafe legacy renegotiation.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.