imPC@ndo IT

Tracker / CVE-2002-20001

CVE-2002-20001

High 7.5

The Diffie-Hellman Key Agreement Protocol allows remote attackers (from the client side) to send arbitrary numbers that are actually not public keys, and trigger expensive server-side DHE modular-exponentiation calculations, aka a D(HE)at or D(HE)ater attack. The client needs very little CPU resources and network bandwidth. The attack may be more disruptive in cases where a client can require a server to select its largest supported key size. The basic attack scenario is that the client must claim that it can only communicate with DHE, and the server must be configured to allow DHE.

Affected products and versions

balasys dheater
f5 big-ip_access_policy_manager · 13.1.0 → 16.1.4
f5 big-ip_access_policy_manager · 17.0.0 → 17.1.0
f5 big-ip_advanced_firewall_manager
f5 big-ip_advanced_firewall_manager · 13.1.0 → 17.1.2
f5 big-ip_advanced_web_application_firewall
f5 big-ip_advanced_web_application_firewall · 13.1.0 → 17.1.2
f5 big-ip_analytics
f5 big-ip_analytics · 13.1.0 → 17.1.2
f5 big-ip_application_acceleration_manager
f5 big-ip_application_acceleration_manager · 13.1.0 → 17.1.2
f5 big-ip_application_security_manager
f5 big-ip_application_security_manager · 13.1.0 → 17.1.2
f5 big-ip_application_visibility_and_reporting
f5 big-ip_application_visibility_and_reporting · 13.1.0 → 17.1.2
f5 big-ip_carrier-grade_nat
f5 big-ip_carrier-grade_nat · 13.1.0 → 17.1.2
f5 big-ip_ddos_hybrid_defender
f5 big-ip_ddos_hybrid_defender · 13.1.0 → 17.1.2
f5 big-ip_domain_name_system
f5 big-ip_domain_name_system · 13.1.0 → 17.1.2
f5 big-ip_edge_gateway
f5 big-ip_edge_gateway · 13.1.0 → 17.1.2
f5 big-ip_fraud_protection_service
f5 big-ip_fraud_protection_service · 13.1.0 → 17.1.2
f5 big-ip_global_traffic_manager
f5 big-ip_global_traffic_manager · 13.1.0 → 17.1.2
f5 big-ip_link_controller
f5 big-ip_link_controller · 13.1.0 → 17.1.2
f5 big-ip_local_traffic_manager
f5 big-ip_local_traffic_manager · 13.1.0 → 17.1.2
f5 big-ip_policy_enforcement_manager
f5 big-ip_policy_enforcement_manager · 13.1.0 → 17.1.2
f5 big-ip_service_proxy
f5 big-ip_ssl_orchestrator
f5 big-ip_ssl_orchestrator · 13.1.0 → 17.1.2
f5 big-ip_webaccelerator
f5 big-ip_webaccelerator · 13.1.0 → 17.1.2
f5 big-ip_websafe
f5 big-ip_websafe · 13.1.0 → 17.1.2
f5 big-iq_centralized_management
f5 big-iq_centralized_management · 8.0.0 → 8.4.0
f5 f5os-a
f5 f5os-a · 1.3.0 → 1.3.2
f5 f5os-a · 1.5.0 → 1.5.3
f5 f5os-c
f5 f5os-c · 1.3.0 → 1.3.2
f5 f5os-c · 1.6.0 → 1.6.2
f5 traffix_signaling_delivery_controller
hpe arubaos-cx · 10.06.0000 → 10.06.0180
hpe arubaos-cx · 10.07.0000 → 10.07.0030
hpe arubaos-cx · 10.08.0000 → 10.08.0010
hpe arubaos-cx · 10.09.0000 → 10.09.0002
siemens scalance_w1750d_firmware
stormshield stormshield_management_center · … → 3.3.3
stormshield stormshield_network_security · 2.7.0 → 4.3.16
stormshield stormshield_network_security · 4.4.0 → 4.6.3
suse linux_enterprise_server

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References