[Bug 1222871] New: VUL-0: CVE-2024-31497: filezilla: putty: NIST P521 private keys are exposed by biased signature generation
https://bugzilla.suse.com/show_bug.cgi?id=1222871 Bug ID: 1222871 Summary: VUL-0: CVE-2024-31497: filezilla: putty: NIST P521 private keys are exposed by biased signature generation Classification: openSUSE Product: openSUSE Distribution Version: Leap 15.5 Hardware: Other URL: https://smash.suse.de/issue/401933/ OS: Other Status: NEW Severity: Normal Priority: P5 - None Component: Security Assignee: ecsos@schirra.net Reporter: meissner@suse.com QA Contact: qa-bugs@suse.de CC: Andreas.Stieger@gmx.de, jengelh@inai.de, security-team@suse.de Target Milestone: --- Found By: --- Blocker: --- fork of the putty bug for the version embedded in filezilla. +++ This bug was initially created as a clone of Bug #1222864 +++ In PuTTY 0.68 through 0.80 before 0.81, biased ECDSA nonce generation allows an attacker to recover a user's NIST P-521 secret key via a quick lattice-based attack in approximately 60 signatures. This is especially important in a scenario where an adversary is able to read messages signed by PuTTY or Pageant. One scenario is that the adversary is an operator of an SSH server to which the victim authenticates (for remote login or file copy), even though this server is not fully trusted by the victim, and the victim uses the same private key for SSH connections to other services operated by other entities. Here, the rogue server operator (who would otherwise have no way to determine the victim's private key) can derive the victim's private key, and then use it for unauthorized access to those other services. Because SSH is sometimes used to authenticate to Git services, it is possible that this vulnerability could be leveraged for supply-chain attacks on software maintained in Git. It is also conceivable that signed messages from PuTTY or Pageant are readable by adversaries more easily in other scenarios, but none have yet been disclosed. https://www.chiark.greenend.org.uk/~sgtatham/putty/wishlist/vuln-p521-bias.h... https://www.openwall.com/lists/oss-security/2024/04/15/6 https://git.tartarus.org/?p=simon/putty.git;a=commitdiff;h=c193fe9848f50a88a... -- You are receiving this mail because: You are on the CC list for the bug.
https://bugzilla.suse.com/show_bug.cgi?id=1222871 https://bugzilla.suse.com/show_bug.cgi?id=1222871#c2 --- Comment #2 from Jan Engelhardt <jengelh@inai.de> --- filezilla ships a bundled source code copy of putty, that's why. -- You are receiving this mail because: You are on the CC list for the bug.
https://bugzilla.suse.com/show_bug.cgi?id=1222871 https://bugzilla.suse.com/show_bug.cgi?id=1222871#c3 --- Comment #3 from Marcus Meissner <meissner@suse.com> --- (In reply to Eric Schirra from comment #1)
And what have an bug in putty to do with filezilla? Think this a wrong place and should adressed to putty.
Defined in package: network/filezilla bugowner of filezilla : - maintainer of filezilla : ecsos@schirra.net The issue is that filezilla has putty in src/putty/ as embedded library / code. I would just wait that filezilla releases this as update. -- You are receiving this mail because: You are on the CC list for the bug.
https://bugzilla.suse.com/show_bug.cgi?id=1222871 Maintenance Automation <maint-coord+maintenance-robot@suse.de> changed: What |Removed |Added ---------------------------------------------------------------------------- Priority|P5 - None |P3 - Medium -- You are receiving this mail because: You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@suse.com