CVE-2023-2975


AES-SIV implementation ignores empty associated data entries

Issue summary: The AES-SIV cipher implementation contains a bug that causes it to ignore empty associated data entries which are unauthenticated as a consequence. Impact summary: Applications that use the AES-SIV algorithm and want to authenticate empty data entries as associated data can be mislead by removing adding or reordering such empty entries as these are ignored by the OpenSSL implementation. We are currently unaware of any such applications. The AES-SIV algorithm allows for authentication of multiple associated data entries along with the encryption. To authenticate empty data the application has to call EVP_EncryptUpdate() (or EVP_CipherUpdate()) with NULL pointer as the output buffer and 0 as the input buffer length. The AES-SIV implementation in OpenSSL just returns success for such a call instead of performing the associated data authentication operation. The empty data thus will not be authenticated. As this issue does not affect non-empty associated data authentication and we expect it to be rare for an application to use empty associated data entries this is qualified as Low severity issue.



We have discovered 30,487 live websites that are affected by CVE-2023-2975.

Contact us to get more info




Affected Software

Product  OpenSSL
Category Web Server Extensions
Vulnerable Versions
  • from 3 before 3.0.10
  • from 3.1 before 3.1.2
Total Vulnerable Versions30
Vulnerable Domains30,487 live websites (2.80% of OpenSSL install base)



Details

  • Published - Jul 14, 2023
  • Updated - Jul 14, 2023

Credits

  • Juerg Wullschleger (Google) (reporter)
  • Tomas Mraz (remediation developer)




Countries

United States9,520 websites



Germany3,585 websites
France1,987 websites
Japan1,310 websites
GB1,225 websites
Italy934 websites
Finland883 websites
Czech Republic843 websites
Netherlands834 websites
Taiwan775 websites

TLDs

.com10,208 websites
.de2,481 websites
.org1,945 websites
.net1,449 websites
.edu1,121 websites
.fr915 websites
.fi734 websites
.co.uk718 websites
.it696 websites
.cz669 websites

Vulnerable Versions

Vulnerable versions are highlighted in red


References


Websites affected by CVE-2023-2975

Top websites that are affected by CVE-2023-2975. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
***.***********.com United States*,***
******.org United States*,***
***.******.org United States*,***
****.******.org United States*,***
****.org United States*,***
***.****.org United States*,***
*******.com United States*,***
***********.org United States*,***
***.net Singapore*,***
********.org Germany*,***
See full domain list