Vulnslist

Cisco vulnerabilities by product, model, software, and advisory.

Transport Layer Security Renegotiation Remote Man-in-the-Middle Attack Vulnerability

Cisco-SA-20091105-CVE-2009-3555 · Medium · Published · Updated

Multiple Transport Layer Security (TLS) implementations contain a vulnerability when renegotiating a TLS session that could allow an unauthenticated, remote attacker to conduct a man-in-the-middle attack. The vulnerability exists during a TLS renegotiation process. If an attacker can intercept traffic from a client to a TLS server, the attacker could stage a rogue TLS server to intercept that traffic and appear to authenticate the client to what the client thinks is the desired TLS server. The attacker is then able to authenticate to the legitimate TLS server and thus stage a man-in-the-middle attack. However, the attacker would not be able to view the contents of the session and would only be able to inject data or requests into it. Proof-of-concept code that exploits this vulnerability is publicly available. OpenSSL has confirmed this vulnerability in a changelog and released updated software. To exploit this vulnerability, the attacker must be able to intercept traffic from a TLS client to a TLS server. In many cases, this may require the attacker to have access to a network that is adjacent to the targeted user's system. Another possibility would be for the attacker to have access to a network that is adjacent to a legitimate TLS server. This vulnerability is likely to affect multiple implementations of TLS.

Cisco advisory · CSAF JSON

Workarounds

Administrators are advised to apply the appropriate updates.

Administrators are advised to physically secure internal networks and use switches rather than hubs to route the data.

Administrators are advised to run both firewall and antivirus applications to minimize the potential of inbound and outbound threats.

CVEsCVE-2009-3555
Cisco Bug IDsNA
CVSS ScoreBase 4.3
Base 4.3 AV:N/AC:M/Au:N/C:N/I:P/A:N/E:POC/RL:OF/RC:C/CDP:N/TD:N/CR:ND/IR:ND/AR:ND
Product Names From Source
Cisco CNS Network Registrar, Cisco Secure Access Control System (ACS), Cisco Content Services Switch (CSS), CiscoWorks Wireless LAN Solution Engine (WLSE), Cisco GSS Global Site Selector, Cisco Firewall Services Module (FWSM), CiscoWorks Common Services (CS), Cisco Content Switching Module (CSM), Cisco Security Agent, Cisco Wireless Control System (WCS) Software, Cisco AVS Application Velocity System, Cisco Wireless Location Appliance, Cisco Security Agent for Linux, Cisco Wide Area Application Services (WAAS), Cisco Unified Contact Center Enterprise, Cisco Unified IP Conference Station 7936, Cisco Unified IP Conference Station 7935, Cisco Unified IP Phone 7906G, Cisco Unified IP Phone 7911G, Cisco Unified IP Phone 7941G, Cisco Unified IP Phone 7961G, Cisco Unified IP Phone 7970G, Cisco Unified IP Phone 7971G, Cisco IP Communicator, Cisco Unified IP Phone 7931G, Cisco Unified IP Phone 7942G, Cisco Unified IP Phone 7962G, Cisco Unified IP Phone 7945G, Cisco Unified IP Phone 7965G, Cisco Unified IP Phone 7960G, Cisco Unified IP Phone 7940G, Cisco TelePresence, Cisco NX-OS Software, Cisco Unified Communications Manager, Cisco Application Networking Manager (ANM), Cisco Unified Contact Center Express, Cisco IOS XE Software, Cisco Video Surveillance Operations Manager Software, Cisco Video Surveillance Media Server Software, Cisco Digital Media Player Software, Cisco Digital Media Manager Software, Cisco ACE GSS 4400 Series Global Site Selector (GSS) devices, Cisco Optical Networking Systems (ONS) Firmware, Cisco Optical Networking Systems (ONS) System Software, Cisco ACE Web Application Firewall, Cisco Network Analysis Module (NAM) Software, Cisco Spam and Virus Blocker, Cisco IronPort Web Security Appliance, Cisco IronPort Security Management Appliance, Cisco IronPort Encryption Appliance, Cisco WebEx Connect, Cisco WebEx Event Center, Cisco WebEx Meeting Center, Cisco WebEx MeetMeNow, Cisco WebEx PCNow, Cisco WebEx Sales Center, Cisco WebEx Support Center, Cisco WebEx Training Center, Cisco Adaptive Security Appliance (ASA) Software 7.0.1, Cisco Adaptive Security Appliance (ASA) Software 7.0.1.4, Cisco Adaptive Security Appliance (ASA) Software 7.0.4, Cisco Adaptive Security Appliance (ASA) Software 7.0.4.2, Cisco Adaptive Security Appliance (ASA) Software 7.0.2, Cisco Adaptive Security Appliance (ASA) Software 7.0.3, Cisco Adaptive Security Appliance (ASA) Software 7.0.7.1, Cisco Adaptive Security Appliance (ASA) Software 7.0.8, Cisco Adaptive Security Appliance (ASA) Software 7.0.7, Cisco Adaptive Security Appliance (ASA) Software 7.0.6, Cisco Adaptive Security Appliance (ASA) Software 7.0.5, Cisco Adaptive Security Appliance (ASA) Software 7.1.2.61, Cisco Adaptive Security Appliance (ASA) Software 7.1.2, Cisco Adaptive Security Appliance (ASA) Software 7.1.2.81, Cisco Adaptive Security Appliance (ASA) Software 7.2.2.34, Cisco Adaptive Security Appliance (ASA) Software 7.2.3.1, Cisco Adaptive Security Appliance (ASA) Software 7.2.2, Cisco Adaptive Security Appliance (ASA) Software 7.2.4, Cisco Adaptive Security Appliance (ASA) Software 7.2.3, Cisco Adaptive Security Appliance (ASA) Software 7.2.1, Cisco Adaptive Security Appliance (ASA) Software 7.2.4.27, Cisco Adaptive Security Appliance (ASA) Software 7.2.4.30, Cisco Adaptive Security Appliance (ASA) Software 8.0.2.11, Cisco Adaptive Security Appliance (ASA) Software 8.0.4, Cisco Adaptive Security Appliance (ASA) Software 8.0.3, Cisco Adaptive Security Appliance (ASA) Software 8.0.2, Cisco Adaptive Security Appliance (ASA) Software 8.0.1.2, Cisco Adaptive Security Appliance (ASA) Software 8.0.4.25, Cisco Adaptive Security Appliance (ASA) Software 8.0.4.28, Cisco Adaptive Security Appliance (ASA) Software 8.0.4.33, Cisco Adaptive Security Appliance (ASA) Software 8.0.4.32, Cisco Adaptive Security Appliance (ASA) Software 8.2.0.45, Cisco Adaptive Security Appliance (ASA) Software 8.1.1, Cisco Adaptive Security Appliance (ASA) Software 8.1.2, Cisco Adaptive Security Appliance (ASA) Software 8.1.2.15, Cisco Adaptive Security Appliance (ASA) Software 8.1.2.16, Cisco Adaptive Security Appliance (ASA) Software 8.1.2.19, Cisco Adaptive Security Appliance (ASA) Software 8.1.2.23, Cisco Adaptive Security Appliance (ASA) Software 8.1.2.24, Cisco Wireless LAN Controller (WLC) 4.0.196, Cisco Wireless LAN Controller (WLC) 4.0.108, Cisco Wireless LAN Controller (WLC) 4.0.155.5, Cisco Wireless LAN Controller (WLC) 4.0.179.8, Cisco Wireless LAN Controller (WLC) 4.0.179.11, Cisco Wireless LAN Controller (WLC) 4.0.155.0, Cisco Wireless LAN Controller (WLC) 4.0.206.0, Cisco Wireless LAN Controller (WLC) 4.0.217.0, Cisco Wireless LAN Controller (WLC) 4.0.219.0, Cisco Wireless LAN Controller (WLC) 3.2.78.0, Cisco Wireless LAN Controller (WLC) 3.2.116.21, Cisco Wireless LAN Controller (WLC) 3.2.150.6, Cisco Wireless LAN Controller (WLC) 3.2.150.10, Cisco Wireless LAN Controller (WLC) 3.2.171.5, Cisco Wireless LAN Controller (WLC) 3.2.171.6, Cisco Wireless LAN Controller (WLC) 3.2.185.0, Cisco Wireless LAN Controller (WLC) 3.2.195.10, Cisco Wireless LAN Controller (WLC) 3.2.193.5, Cisco Wireless LAN Controller (WLC) 3.1.105.0, Cisco Wireless LAN Controller (WLC) 3.1.59.24, Cisco Wireless LAN Controller (WLC) 3.1.111.0, Cisco Wireless LAN Controller (WLC) Base, Cisco Wireless LAN Controller (WLC) 4.1.181.0, Cisco Wireless LAN Controller (WLC) 4.1.171.0, Cisco Wireless LAN Controller (WLC) 4.1.185.0, Cisco Wireless LAN Controller (WLC) 4.2.61.0, Cisco Wireless LAN Controller (WLC) 4.2.99.0, Cisco Wireless LAN Controller (WLC) 4.2.112.0, Cisco Wireless LAN Controller (WLC) 4.2.130.0, Cisco Wireless LAN Controller (WLC) 4.2.117.0, Cisco Wireless LAN Controller (WLC) 4.2.173.0, Cisco Wireless LAN Controller (WLC) 4.2.174.0, Cisco Wireless LAN Controller (WLC) 4.2.176.0, Cisco Wireless LAN Controller (WLC) 4.2.182.0, Cisco Wireless LAN Controller (WLC) 5.0.148.0, Cisco Wireless LAN Controller (WLC) 5.0.148.2, Cisco Wireless LAN Controller (WLC) 5.1.151.0, Cisco Wireless LAN Controller (WLC) 5.1.152.0, Cisco Wireless LAN Controller (WLC) 5.1.160.0, Cisco Wireless LAN Controller (WLC) 5.2.157.0, Cisco Wireless LAN Controller (WLC) 5.2.169.0, Cisco Wireless LAN Controller (WLC), Cisco Adaptive Security Appliance (ASA) Software, Cisco Security Agent for Linux

Related Products

Product CVE Evidence
CiscoWorks Wireless LAN Solution Engine (WLSE) CVE-2009-3555 Cisco OpenVuln
CiscoWorks Common Services (CS) CVE-2009-3555 Cisco OpenVuln
Cisco Wireless Location Appliance CVE-2009-3555 Cisco OpenVuln
Cisco Wireless LAN Controller (WLC) CVE-2009-3555 Cisco OpenVuln
Cisco Wireless Control System (WCS) Software CVE-2009-3555 Cisco OpenVuln
Cisco Wide Area Application Services (WAAS) CVE-2009-3555 Cisco OpenVuln
Cisco WebEx Training Center CVE-2009-3555 Cisco OpenVuln
Cisco WebEx Support Center CVE-2009-3555 Cisco OpenVuln
Cisco WebEx Sales Center CVE-2009-3555 Cisco OpenVuln
Cisco WebEx PCNow CVE-2009-3555 Cisco OpenVuln
Cisco WebEx Meeting Center CVE-2009-3555 Cisco OpenVuln
Cisco WebEx MeetMeNow CVE-2009-3555 Cisco OpenVuln
Cisco WebEx Event Center CVE-2009-3555 Cisco OpenVuln
Cisco WebEx Connect CVE-2009-3555 Cisco OpenVuln
Cisco Video Surveillance Operations Manager Software CVE-2009-3555 Cisco OpenVuln
Cisco Video Surveillance Media Server Software CVE-2009-3555 Cisco OpenVuln
Cisco Unified IP Phone 7971G CVE-2009-3555 Cisco OpenVuln
Cisco Unified IP Phone 7970G CVE-2009-3555 Cisco OpenVuln
Cisco Unified IP Phone 7965G CVE-2009-3555 Cisco OpenVuln
Cisco Unified IP Phone 7962G CVE-2009-3555 Cisco OpenVuln
Cisco Unified IP Phone 7961G CVE-2009-3555 Cisco OpenVuln
Cisco Unified IP Phone 7960G CVE-2009-3555 Cisco OpenVuln
Cisco Unified IP Phone 7945G CVE-2009-3555 Cisco OpenVuln
Cisco Unified IP Phone 7942G CVE-2009-3555 Cisco OpenVuln
Cisco Unified IP Phone 7941G CVE-2009-3555 Cisco OpenVuln
Cisco Unified IP Phone 7940G CVE-2009-3555 Cisco OpenVuln
Cisco Unified IP Phone 7931G CVE-2009-3555 Cisco OpenVuln
Cisco Unified IP Phone 7911G CVE-2009-3555 Cisco OpenVuln
Cisco Unified IP Phone 7906G CVE-2009-3555 Cisco OpenVuln
Cisco Unified IP Conference Station 7936 CVE-2009-3555 Cisco OpenVuln
Cisco Unified IP Conference Station 7935 CVE-2009-3555 Cisco OpenVuln
Cisco Unified Contact Center Express CVE-2009-3555 Cisco OpenVuln
Cisco Unified Contact Center Enterprise CVE-2009-3555 Cisco OpenVuln
Cisco Unified Contact Center CVE-2009-3555 Cisco OpenVuln
Cisco Unified Communications Manager CVE-2009-3555 Cisco OpenVuln
Cisco TelePresence CVE-2009-3555 Cisco OpenVuln
Cisco Spam and Virus Blocker CVE-2009-3555 Cisco OpenVuln
Cisco Security Agent for Linux CVE-2009-3555 Cisco OpenVuln
Cisco Security Agent CVE-2009-3555 Cisco OpenVuln
Cisco Secure Access Control System (ACS) CVE-2009-3555 Cisco OpenVuln
Cisco Optical Networking Systems (ONS) System Software CVE-2009-3555 Cisco OpenVuln
Cisco Optical Networking Systems (ONS) Firmware CVE-2009-3555 Cisco OpenVuln
Cisco Optical Networking Systems (ONS) CVE-2009-3555 Cisco OpenVuln
Cisco Network Analysis Module (NAM) Software CVE-2009-3555 Cisco OpenVuln
Cisco NX-OS Software CVE-2009-3555 Cisco OpenVuln
Cisco IronPort Web Security Appliance CVE-2009-3555 Cisco OpenVuln
Cisco IronPort Security Management Appliance CVE-2009-3555 Cisco OpenVuln
Cisco IronPort Encryption Appliance CVE-2009-3555 Cisco OpenVuln
Cisco IP Communicator CVE-2009-3555 Cisco OpenVuln
Cisco IOS XE Software CVE-2009-3555 Cisco OpenVuln
Cisco IOS CVE-2009-3555 Cisco OpenVuln
Cisco GSS Global Site Selector CVE-2009-3555 Cisco OpenVuln
Cisco Firewall Services Module (FWSM) CVE-2009-3555 Cisco OpenVuln
Cisco Digital Media Player Software CVE-2009-3555 Cisco OpenVuln
Cisco Digital Media Manager Software CVE-2009-3555 Cisco OpenVuln
Cisco Content Switching Module (CSM) CVE-2009-3555 Cisco OpenVuln
Cisco Content Services Switch (CSS) CVE-2009-3555 Cisco OpenVuln
Cisco CNS Network Registrar CVE-2009-3555 Cisco OpenVuln
Cisco Application Networking Manager (ANM) CVE-2009-3555 Cisco OpenVuln
Cisco Adaptive Security Appliance (ASA) Software CVE-2009-3555 Cisco OpenVuln
Cisco AVS Application Velocity System CVE-2009-3555 Cisco OpenVuln
Cisco ACE Web Application Firewall CVE-2009-3555 Cisco OpenVuln
Cisco ACE GSS 4400 Series Global Site Selector (GSS) devices CVE-2009-3555 Cisco OpenVuln
Cisco Catalyst 9600 Series Switches CVE-2009-3555 Cisco OpenVuln · software-dependent
Cisco Catalyst 9500 Series Switches CVE-2009-3555 Cisco OpenVuln · software-dependent
Cisco Catalyst 9400 Series Switches CVE-2009-3555 Cisco OpenVuln · software-dependent
Cisco Catalyst 9300 Series Switches CVE-2009-3555 Cisco OpenVuln · software-dependent
Cisco Catalyst 9200 Series Switches CVE-2009-3555 Cisco OpenVuln · software-dependent