← Back to CVE List
Vulnerability Intelligence Report

CVE-2015-8960

The TLS protocol 1.2 and earlier supports the rsa_fixed_dh, dss_fixed_dh, rsa_fixed_ecdh, and ecdsa_fixed_ecdh values for ClientCertificateType but does not directly document the ability to compute the master secret in certain situations with a client secret key and server public key but not a server secret key, which makes it easier for man-in-the-middle attackers to spoof TLS servers by leveraging knowledge of the secret key for an arbitrary installed client X.509 certificate, aka the "Key Compromise Impersonation (KCI)" issue.

No Active Exploit Signals
CVSS Base Score
8.1
HIGH
EPSS Probability:1.95%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Affected Products & Versions

Vendor Product Affected Versions
ietf transport_layer_security all
apple safari all
google chrome all
microsoft internet_explorer all
mozilla firefox all
opera opera_browser all
netapp clustered_data_ontap_antivirus_connector all
netapp data_ontap_edge all
netapp host_agent all
netapp oncommand_shift all
netapp plug-in_for_symantec_netbackup all
netapp smi-s_provider all
netapp snap_creator_framework all
netapp snapdrive all
netapp snapmanager all
netapp snapprotect all
netapp solidfire_\&_hci_management_node all
netapp system_setup all

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
1.947%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityRed Hat, Inc. · Vendor · USA
Reserved2016-09-20T00:00:00
Published2016-09-21T01:00:00
Patch Date2015-11-08
Last Updated2024-08-06T08:36:30

LINK COPIED TO CLIPBOARD