← Vulnerability feed

Vulnerability record · CVE-2003-0078 · published 3 March 2003

CVE-2003-0078: Openssl observable discrepancy vulnerability

OOpenssl · Openssl

ssl3_get_record in s3_pkt.c for OpenSSL before 0.9.7a and 0.9.6 before 0.9.6i does not perform a MAC computation if an incorrect block cipher padding is used, which causes an information leak (timing discrepancy) that may make it easier to launch cryptographic attacks that rely on distinguishing between padding and MAC verification errors, possibly leading to extraction of the original plaintext, aka the "Vaudenay timing attack."

5.0 CVSS 2.0 Medium EPSS 14% · top 3.6% CWE-203 · Observable discrepancy
5.0CVSS 2.0 base score
14%EPSS exploitation probability, 30 days
NoNot in CISA KEV
3Affected product versions listed by NVD
40References
16 Jun 2026Last modified by NVD

Description

ssl3_get_record in s3_pkt.c for OpenSSL before 0.9.7a and 0.9.6 before 0.9.6i does not perform a MAC computation if an incorrect block cipher padding is used, which causes an information leak (timing discrepancy) that may make it easier to launch cryptographic attacks that rely on distinguishing between padding and MAC verification errors, possibly leading to extraction of the original plaintext, aka the "Vaudenay timing attack."

AV:N/AC:L/Au:N/C:P/I:N/A:N

Affected products

3 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2003-001.txt.asc Broken Link
ftp://patches.sgi.com/support/free/security/advisories/20030501-01-I Broken Link
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000570 Broken Link
http://marc.info/?l=bugtraq&m=104567627211904&w=2 Third Party Advisory
http://marc.info/?l=bugtraq&m=104568426824439&w=2 Third Party Advisory
http://marc.info/?l=bugtraq&m=104577183206905&w=2 Third Party Advisory
http://www.ciac.org/ciac/bulletins/n-051.shtml Broken Link
http://www.debian.org/security/2003/dsa-253 Broken LinkVendor Advisory
http://www.iss.net/security_center/static/11369.php Broken LinkVendor Advisory
http://www.linuxsecurity.com/advisories/engarde_advisory-2874.html Broken Link
http://www.mandrakesoft.com/security/advisories?name=MDKSA-2003:020 Broken Link
http://www.openssl.org/news/secadv_20030219.txt Broken LinkPatchVendor Advisory
http://www.osvdb.org/3945 Broken Link
http://www.redhat.com/support/errata/RHSA-2003-062.html Broken Link
http://www.redhat.com/support/errata/RHSA-2003-063.html Broken Link
http://www.redhat.com/support/errata/RHSA-2003-082.html Broken Link
http://www.redhat.com/support/errata/RHSA-2003-104.html Broken Link
http://www.redhat.com/support/errata/RHSA-2003-205.html Broken Link
http://www.securityfocus.com/bid/6884 Broken LinkThird Party AdvisoryVDB Entry
http://www.trustix.org/errata/2003/0005 Broken Link
ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2003-001.txt.asc Broken Link
ftp://patches.sgi.com/support/free/security/advisories/20030501-01-I Broken Link
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000570 Broken Link
http://marc.info/?l=bugtraq&m=104567627211904&w=2 Third Party Advisory
http://marc.info/?l=bugtraq&m=104568426824439&w=2 Third Party Advisory
http://marc.info/?l=bugtraq&m=104577183206905&w=2 Third Party Advisory
http://www.ciac.org/ciac/bulletins/n-051.shtml Broken Link
http://www.debian.org/security/2003/dsa-253 Broken LinkVendor Advisory
http://www.iss.net/security_center/static/11369.php Broken LinkVendor Advisory
http://www.linuxsecurity.com/advisories/engarde_advisory-2874.html Broken Link
http://www.mandrakesoft.com/security/advisories?name=MDKSA-2003:020 Broken Link
http://www.openssl.org/news/secadv_20030219.txt Broken LinkPatchVendor Advisory
http://www.osvdb.org/3945 Broken Link
http://www.redhat.com/support/errata/RHSA-2003-062.html Broken Link
http://www.redhat.com/support/errata/RHSA-2003-063.html Broken Link
http://www.redhat.com/support/errata/RHSA-2003-082.html Broken Link
http://www.redhat.com/support/errata/RHSA-2003-104.html Broken Link
http://www.redhat.com/support/errata/RHSA-2003-205.html Broken Link
http://www.securityfocus.com/bid/6884 Broken LinkThird Party AdvisoryVDB Entry
http://www.trustix.org/errata/2003/0005 Broken Link

Track CVE-2003-0078 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.5CVE-2014-0160OpenSSL TLS/DTLS Heartbeat Extension Out-of-Bounds Read (Heartbleed)OpenSSL 1.0.1 before 1.0.1g mishandles Heartbeat Extension packets in its TLS and DTLS implementations, causing an out-of-bounds read of process memo…KEVEPSS 100%analysed10.0CVE-2024-43102Freebsd use after free vulnerabilityConcurrent removals of certain anonymous shared memory mappings by using the UMTX_SHM_DESTROY sub-request of UMTX_OP_SHM can lead to decreasing the r…EPSS 0.68%10.0CVE-2018-17160Freebsd out-of-bounds write vulnerabilityIn FreeBSD before 11.2-STABLE(r341486) and 11.2-RELEASE-p6, insufficient bounds checking in one of the device models provided by bhyve can permit a g…EPSS 3.3%10.0CVE-2014-3954Freebsd memory buffer overflow vulnerabilityStack-based buffer overflow in rtsold in FreeBSD 9.1 through 10.1-RC2 allows remote attackers to cause a denial of service (crash) or possibly execut…EPSS 3.9%10.0CVE-2011-4862telnetd encryption key buffer overflow allows remote code executionA buffer overflow in libtelnet/encrypt.c in telnetd affects FreeBSD 7.3 through 9.0, MIT krb5-appl 1.0.2 and earlier, Heimdal 1.5.1 and earlier, GNU …EPSS 95%analysed10.0CVE-2009-3245Openssl improper input validation vulnerabilityOpenSSL before 0.9.8m does not check for a NULL return value from bn_wexpand function calls in (1) crypto/bn/bn_div.c, (2) crypto/bn/bn_gf2m.c, (3) c…EPSS 6.5%10.0CVE-2007-1365Openbsd vulnerabilityBuffer overflow in kern/uipc_mbuf2.c in OpenBSD 3.9 and 4.0 allows remote attackers to execute arbitrary code via fragmented IPv6 packets due to "inc…EPSS 18%10.0CVE-2006-3738OpenSSL SSL_get_shared_ciphers buffer overflow via long cipher listOpenSSL versions before 0.9.7l and 0.9.8d contain a buffer overflow in the SSL_get_shared_ciphers function, triggered by a long list of ciphers. The …EPSS 49%analysed

Source: NIST National Vulnerability Database (record CVE-2003-0078), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.