CVE Feed

    Dashboard / CVE / CVE-2020-1971

    CVE-2020-1971

    The X.509 GeneralName type is a generic type for representing different types of names. One of those name types is known as EDIPartyName. OpenSSL provides a function GENERAL_NAME_cmp which compares different instances of a GENERAL_NAME to see if they are equal or not. This function behaves incorrectly when both GENERAL_NAMEs contain an EDIPARTYNAME. A NULL pointer dereference and a crash may occur leading to a possible denial of service attack. OpenSSL itself uses the GENERAL_NAME_cmp function for two purposes: 1) Comparing CRL distribution point names between an available CRL and a CRL distribution point embedded in an X509 certificate 2) When verifying that a timestamp response token signer matches the timestamp authority name (exposed via the API functions TS_RESP_verify_response and TS_RESP_verify_token) If an attacker can control both items being compared then that attacker could trigger a crash. For example if the attacker can trick a client or server into checking a malicious certificate against a malicious CRL then this may occur. Note that some applications automatically download CRLs based on a URL embedded in a certificate. This checking happens prior to the signatures on the certificate and CRL being verified. OpenSSL's s_server, s_client and verify tools have support for the "-crl_download" option which implements automatic CRL downloading and this attack has been demonstrated to work against those tools. Note that an unrelated bug means that affected versions of OpenSSL cannot parse or construct correct encodings of EDIPARTYNAME. However it is possible to construct a malformed EDIPARTYNAME that OpenSSL's parser will accept and hence trigger this attack. All OpenSSL 1.1.1 and 1.0.2 versions are affected by this issue. Other OpenSSL releases are out of support and have not been checked. Fixed in OpenSSL 1.1.1i (Affected 1.1.1-1.1.1h). Fixed in OpenSSL 1.0.2x (Affected 1.0.2-1.0.2w).

    Published:Dec 8, 2020
    Last Modified:May 29, 2026
    EPS:Dec 8, 2020
    EPSS Score:0.00348
    CVSS Score:5.9

    Affected Products

    Vendor
    Debian
    Product
    Debian Linux
    Vendor
    Fedoraproject
    Product
    Fedora
    Vendor
    Netapp
    Product
    Active Iq Unified Manager
    Vendor
    Netapp
    Product
    Aff A250
    Vendor
    Netapp
    Product
    Aff A250 Firmware
    Vendor
    Netapp
    Product
    Clustered Data Ontap Antivirus Connector
    Vendor
    Netapp
    Product
    Data Ontap
    Vendor
    Netapp
    Product
    E-series Santricity Os Controller
    Vendor
    Netapp
    Product
    Ef600a
    Vendor
    Netapp
    Product
    Ef600a Firmware
    Vendor
    Netapp
    Product
    Hci Compute Node
    Vendor
    Netapp
    Product
    Hci Management Node
    Vendor
    Netapp
    Product
    Hci Storage Node
    Vendor
    Netapp
    Product
    Manageability Software Development Kit
    Vendor
    Netapp
    Product
    Oncommand Insight
    Vendor
    Netapp
    Product
    Oncommand Workflow Automation
    Vendor
    Netapp
    Product
    Plug-in For Symantec Netbackup
    Vendor
    Netapp
    Product
    Santricity Smi-s Provider
    Vendor
    Netapp
    Product
    Snapcenter
    Vendor
    Netapp
    Product
    Solidfire
    Vendor
    Nodejs
    Product
    Node.js
    Vendor
    Openssl
    Product
    Openssl
    Vendor
    Oracle
    Product
    Api Gateway
    Vendor
    Oracle
    Product
    Business Intelligence
    Vendor
    Oracle
    Product
    Communications Cloud Native Core Network Function Cloud Native Environment
    Vendor
    Oracle
    Product
    Communications Diameter Intelligence Hub
    Vendor
    Oracle
    Product
    Communications Session Border Controller
    Vendor
    Oracle
    Product
    Communications Session Router
    Vendor
    Oracle
    Product
    Communications Subscriber-aware Load Balancer
    Vendor
    Oracle
    Product
    Communications Unified Session Manager
    Vendor
    Oracle
    Product
    Enterprise Communications Broker
    Vendor
    Oracle
    Product
    Enterprise Manager Base Platform
    Vendor
    Oracle
    Product
    Enterprise Manager For Storage Management
    Vendor
    Oracle
    Product
    Enterprise Manager Ops Center
    Vendor
    Oracle
    Product
    Enterprise Session Border Controller
    Vendor
    Oracle
    Product
    Essbase
    Vendor
    Oracle
    Product
    Graalvm
    Vendor
    Oracle
    Product
    Http Server
    Vendor
    Oracle
    Product
    Jd Edwards Enterpriseone Tools
    Vendor
    Oracle
    Product
    Jd Edwards World Security
    Vendor
    Oracle
    Product
    Mysql
    Vendor
    Oracle
    Product
    Mysql Server
    Vendor
    Oracle
    Product
    Peoplesoft Enterprise Peopletools
    Vendor
    Redhat
    Product
    Enterprise Linux
    Vendor
    Redhat
    Product
    Jboss Core Services
    Vendor
    Redhat
    Product
    Jboss Enterprise Web Server
    Vendor
    Redhat
    Product
    Openshift Do
    Vendor
    Redhat
    Product
    Rhel Aus
    Vendor
    Redhat
    Product
    Rhel E4s
    Vendor
    Redhat
    Product
    Rhel Els
    Vendor
    Redhat
    Product
    Rhel Eus
    Vendor
    Redhat
    Product
    Rhel Tus
    Vendor
    Siemens
    Product
    Sinec Infrastructure Network Services
    Vendor
    Tenable
    Product
    Log Correlation Engine
    Vendor
    Tenable
    Product
    Nessus Network Monitor

    Common Weakness Enumeration

    Common Attack Pattern Enumeration and Classification (CAPEC)

    No CAPEC recorded yet

    Related CVEs

    References

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High