Vulnerability record · CVE-2011-3389 · published 6 September 2011
CVE-2011-3389: SSL/TLS CBC IV weakness enables BEAST plaintext header recovery
Google · Chrome
The SSL protocol's use of CBC mode with chained initialization vectors allows a man-in-the-middle attacker to recover plaintext HTTP headers from an HTTPS session via a blockwise chosen-boundary attack (BCBA), known as BEAST. It affects SSL/TLS implementations in Windows, Internet Explorer, Firefox, Chrome, Opera, curl, and various Linux distributions. Because it undermines the confidentiality of HTTPS traffic, it matters for any environment still relying on vulnerable TLS configurations.
Description
The SSL protocol, as used in certain configurations in Microsoft Windows and Microsoft Internet Explorer, Mozilla Firefox, Google Chrome, Opera, and other products, encrypts data by using CBC mode with chained initialization vectors, which allows man-in-the-middle attackers to obtain plaintext HTTP headers via a blockwise chosen-boundary attack (BCBA) on an HTTPS session, in conjunction with JavaScript code that uses (1) the HTML5 WebSocket API, (2) the Java URLConnection API, or (3) the Silverlight WebClient API, aka a "BEAST" attack.
AV:N/AC:M/Au:N/C:P/I:N/A:N
Automated analysis
high priorityAlthough the CVSS base score is medium, the very high EPSS percentile and broad multi-vendor impact on HTTPS confidentiality warrant high defensive priority.
What it is
The SSL protocol's use of CBC mode with chained initialization vectors allows a man-in-the-middle attacker to recover plaintext HTTP headers from an HTTPS session via a blockwise chosen-boundary attack (BCBA), known as BEAST. It affects SSL/TLS implementations in Windows, Internet Explorer, Firefox, Chrome, Opera, curl, and various Linux distributions. Because it undermines the confidentiality of HTTPS traffic, it matters for any environment still relying on vulnerable TLS configurations.
Impact
An attacker positioned on the network path can decrypt portions of HTTPS traffic, specifically HTTP headers, exposing cookies, authentication tokens, and other sensitive session data. This can lead to session hijacking or credential theft.
Attack surface
Reached over the network by a man-in-the-middle who can inject JavaScript into the victim's browser session; no authentication is required, but the attack depends on the victim loading attacker-controlled JavaScript that uses WebSocket, Java URLConnection, or Silverlight WebClient APIs.
Exploitation
Not listed in CISA KEV and no ransomware usage documented, but EPSS is very high (0.733 probability, 99.4th percentile), indicating significant predicted exploitation activity; references are advisory and technical in nature.
What to do
- Apply vendor patches and updates for affected browsers, operating systems, and TLS libraries.
- Disable or deprioritize CBC-mode cipher suites in favor of AEAD ciphers such as AES-GCM where supported.
- Enable TLS 1.1 or higher, or apply the 1/n-1 record splitting workaround on servers and clients.
- Restrict or disable unnecessary browser plugins and APIs (Java, Silverlight) that facilitate the attack.
- Enforce HSTS and avoid mixed content to reduce injection opportunities.
Detection
- Monitor for anomalous TLS handshake patterns or repeated small-record TLS traffic consistent with 1/n-1 splitting or BCBA probing.
- Inspect network traffic for injected JavaScript or unexpected cross-origin requests targeting HTTPS sessions.
- Track use of legacy CBC cipher suites in TLS logs and alert on their presence.
- Correlate endpoint logs for Java, Silverlight, or WebSocket activity originating from untrusted pages.
This assessment is produced automatically and is not human-reviewed. Verify against the vendor advisory before acting on it.
Affected products
15 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
Track CVE-2011-3389 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2011-3389), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.