TLS.DH.Downgrade.Cipher.Temp.Key.Security.Bypass

description-logoDescription

This indicates an attack attempt against a Cryptographic Vulnerability in OpenSSL and Microsoft Windows.
The vulnerability is caused by a weak cryptographic primitive during negotiation phase between client and server. A remote attacker may be able to exploit this to break encryption keys and afterward decrypt traffics via man in the middle attack.

affected-products-logoAffected Products

Any security primitives which support DH with 512 bits key

Impact logoImpact

Information Disclosure: Remote attackers can gain sensitive information from vulnerable systems.

recomended-action-logoRecommended Actions

Currently we are unaware of any vendor supplied patch for this issue

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2019-06-07 14.628 Severity:medium:low
2019-01-17 14.526 Sig Added