Topic : | Apache CouchDB 0.10.1 Timing Attack Vulnerability
|
SecurityAlert : 7207
CVE : CVE-2010-0009
CWE : CWE-200
SecurityRisk : High (About)
Remote Exploit : Yes
Local Exploit : No
Victim interaction required : No
Exploit Available : No
Credit : Jan Lehnardt
Published : 07.04.2010
Affected Software : | apache:couchdb:0.10.1
apache:couchdb:0.10.0
apache:couchdb:0.9.2
apache:couchdb:0.9.1
apache:couchdb:0.9.0
apache:couchdb:0.8.1
apache:couchdb:0.8.0 |
 Advisory Content : CVE-2008-2370: Apache CouchDB Timing Attack Vulnerability
Severity: Important
Vendor:
The Apache Software Foundation
Versions Affected:
Apache CouchDB 0.8.0 to 0.10.1
Description:
Apache CouchDB versions prior to version 0.11.0 are vulnerable to
timing attacks, also known as side-channel information leakage,
due to using simple break-on-inequality string comparisons when
verifying hashes and passwords.
Mitigation:
All users should upgrade to CouchDB 0.11.0. Upgrades from the 0.10.x
series should be seamless. Users on earlier versions should consult
http://wiki.apache.org/couchdb/Breaking_changes
Example:
A canonical description of the attack can be found in
http://codahale.com/a-lesson-in-timing-attacks/
Credit:
This issue was discovered by Jason Davies of the Apache CouchDB
development team.
References:
http://couchdb.apache.org/
http://couchdb.apache.org/downloads.html
http://wiki.apache.org/couchdb/Breaking_changes
http://codahale.com/a-lesson-in-timing-attacks/
Jan Lehnardt
--
References :
http://couchdb.apache.org/security.html
https://bugzilla.redhat.com/show_bug.cgi?id=578572
http://www.securityfocus.com/bid/39116
http://www.securityfocus.com/archive/1/archive/1/510427/100/0/threaded
http://www.osvdb.org/63350
http://secunia.com/advisories/39146
http://archives.neohapsis.com/archives/bugtraq/2010-03/0267.html
Feedback :
If you have additional information or notice any errors regarding this security advisory, please use contact form or email us at info()securityreason()com.
|