dlongofbb

updated

4 years ago

D

dlongofbb

5 Posts

0

5646

April 12th, 2022 13:00

TLS/SSL Server Is Using Commonly Used Prime Numbers - Dell OME Vulnerability 3.8.3 (Build 8)

We are running Dell OME Version 3.8.3 (Build and are security team has forwarded me a vulnerability from our SIEM.

 

the server is using a common or default prime number as a parameter during the Diffie-Hellman key exchange. This makes the secure session vulnerable to a precomputation attack. An attacker can spend a significant amount of time to generate a lookup/rainbow table for a particular prime number. This lookup table can then be used to obtain the shared secret for the handshake and decrypt the session.
 
Has anyone seen this vulnerability or know how to apply the cipher suites to mitigate this vulnerability?
 
Thanks!