The DES and Triple DES ciphers, as used in the TLS, SSH, and IPSec protocols and other protocols and products, have a birthday bound of approximately four billion blocks, which makes it easier for remote attackers to obtain cleartext data via a birthday attack against a long-duration encrypted session, as demonstrated by an HTTPS session using Triple DES in CBC mode, aka a "Sweet32" attack.
{
"unresolved_ranges": [
{
"extracted_events": [
{
"last_affected": "9.6.6-068"
},
{
"last_affected": "9.7.0-006"
}
],
"cpes": [
"cpe:2.3:a:cisco:content_security_management_appliance:9.6.6-068:*:*:*:*:*:*:*",
"cpe:2.3:a:cisco:content_security_management_appliance:9.7.0-006:*:*:*:*:*:*:*"
],
"vendor_product": "cisco:content_security_management_appliance",
"source": "CPE_STRING"
},
{
"extracted_events": [
{
"last_affected": "11.2.0.4"
},
{
"last_affected": "12.1.0.2"
}
],
"cpes": [
"cpe:2.3:a:oracle:database:11.2.0.4:*:*:*:*:*:*:*",
"cpe:2.3:a:oracle:database:12.1.0.2:*:*:*:*:*:*:*"
],
"vendor_product": "oracle:database",
"source": "CPE_STRING"
},
{
"extracted_events": [
{
"last_affected": "5.0"
},
{
"last_affected": "6.0"
},
{
"last_affected": "7.0"
}
],
"cpes": [
"cpe:2.3:o:redhat:enterprise_linux:5.0:*:*:*:*:*:*:*",
"cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*",
"cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*"
],
"vendor_product": "redhat:enterprise_linux",
"source": "CPE_STRING"
},
{
"extracted_events": [
{
"last_affected": "6.0.0"
}
],
"cpes": [
"cpe:2.3:a:redhat:jboss_enterprise_application_platform:6.0.0:*:*:*:*:*:*:*"
],
"vendor_product": "redhat:jboss_enterprise_application_platform",
"source": "CPE_STRING"
},
{
"extracted_events": [
{
"last_affected": "2.0.0"
}
],
"cpes": [
"cpe:2.3:a:redhat:jboss_enterprise_web_server:2.0.0:*:*:*:*:*:*:*"
],
"vendor_product": "redhat:jboss_enterprise_web_server",
"source": "CPE_STRING"
},
{
"extracted_events": [
{
"last_affected": "3.0"
}
],
"cpes": [
"cpe:2.3:a:redhat:jboss_web_server:3.0:*:*:*:*:*:*:*"
],
"vendor_product": "redhat:jboss_web_server",
"source": "CPE_STRING"
}
]
}{
"extracted_events": [
{
"introduced": "0.10.0"
},
{
"fixed": "0.10.47"
},
{
"introduced": "0.12.0"
},
{
"fixed": "0.12.16"
},
{
"introduced": "4.0.0"
},
{
"fixed": "4.1.2"
},
{
"introduced": "4.2.0"
},
{
"fixed": "4.6.0"
},
{
"introduced": "6.0.0"
},
{
"fixed": "6.7.0"
}
],
"cpe": [
"cpe:2.3:a:nodejs:node.js:*:*:*:*:*:*:*:*",
"cpe:2.3:a:nodejs:node.js:*:*:*:*:-:*:*:*",
"cpe:2.3:a:nodejs:node.js:*:*:*:*:lts:*:*:*"
],
"source": "CPE_RANGE"
}{
"extracted_events": [
{
"introduced": "0"
},
{
"last_affected": "1.0.1a"
},
{
"last_affected": "1.0.1b"
},
{
"last_affected": "1.0.1c"
},
{
"last_affected": "1.0.1d"
},
{
"last_affected": "1.0.1e"
},
{
"last_affected": "1.0.1f"
},
{
"last_affected": "1.0.1g"
},
{
"last_affected": "1.0.1h"
},
{
"last_affected": "1.0.1i"
},
{
"last_affected": "1.0.1j"
},
{
"last_affected": "1.0.1k"
},
{
"last_affected": "1.0.1l"
},
{
"last_affected": "1.0.1m"
},
{
"last_affected": "1.0.1n"
},
{
"last_affected": "1.0.1o"
},
{
"last_affected": "1.0.1p"
},
{
"last_affected": "1.0.1q"
},
{
"last_affected": "1.0.1r"
},
{
"last_affected": "1.0.1t"
},
{
"last_affected": "1.0.2a"
},
{
"last_affected": "1.0.2b"
},
{
"last_affected": "1.0.2c"
},
{
"last_affected": "1.0.2d"
},
{
"last_affected": "1.0.2e"
},
{
"last_affected": "1.0.2f"
},
{
"last_affected": "1.0.2h"
}
],
"cpe": [
"cpe:2.3:a:openssl:openssl:1.0.1a:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.1b:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.1c:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.1d:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.1e:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.1f:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.1g:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.1h:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.1i:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.1j:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.1k:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.1l:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.1m:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.1n:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.1o:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.1p:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.1q:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.1r:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.1t:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.2a:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.2b:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.2c:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.2d:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.2e:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.2f:*:*:*:*:*:*:*",
"cpe:2.3:a:openssl:openssl:1.0.2h:*:*:*:*:*:*:*"
],
"source": "CPE_STRING"
}{
"extracted_events": [
{
"introduced": "2.7.0"
},
{
"fixed": "2.7.13"
},
{
"introduced": "3.4.0"
},
{
"fixed": "3.4.7"
},
{
"introduced": "3.5.0"
},
{
"fixed": "3.5.3"
}
],
"cpe": "cpe:2.3:a:python:python:*:*:*:*:*:*:*:*",
"source": "CPE_RANGE"
}{
"extracted_events": [
{
"introduced": "0"
},
{
"last_affected": "1.0.0"
}
],
"cpe": "cpe:2.3:a:redhat:jboss_enterprise_web_server:1.0.0:*:*:*:*:*:*:*",
"source": "CPE_STRING"
}