CVE-2012-2130: Weak Encryption
A Security Bypass vulnerability exists in PolarSSL 0.99pre4 through 1.1.1 due to a weak encryption error when generating Diffie-Hellman values and RSA keys.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-2130?
CVE-2012-2130 is classified as a high severity vulnerability due to its potential to enable security bypass and unauthorized data access.
How do I fix CVE-2012-2130?
To fix CVE-2012-2130, upgrade PolarSSL to a version greater than 1.1.1 or apply any available patches from your software vendor.
What systems are affected by CVE-2012-2130?
CVE-2012-2130 affects PolarSSL versions from 0.99pre4 to 1.1.1 and specific distributions like Debian and Fedora.
What type of vulnerability is CVE-2012-2130?
CVE-2012-2130 is a security bypass vulnerability stemming from weak encryption in the generation of Diffie-Hellman values and RSA keys.
Is there a workaround for CVE-2012-2130?
There are no specific workarounds for CVE-2012-2130, so updating the affected software is the recommended action.