目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1336

100%

CVE-2026-75803— EVP_Cipher()使用AEAD时空密文伪造漏洞

一分钟漏洞结论

影响对象
OpenSSL OpenSSL
利用判断
尚无明确在野利用证据,仍需结合暴露面评估
建议动作
优先检查厂商安全公告和参考链接中的修复版本;无法立即升级时,限制受影响服务暴露并加强监测。

漏洞概述:当通过调用 EVP_Cipher() 函数完成操作时,对使用 ChaCha20-Poly1305 和 AES-OCB 算法进行解密且密文为空的情况下,系统可能在未验证所提供的身份验证标签(authentication tag)的情况下返回成功。 影响概述:若应用程序在对空密文调用 EVP_Cipher() 时,期望该函数会检查 AEAD(认证加密带关联数据)标签,则可能会接受伪造的消息。 CWE 编号:CWE-354(完整性检查值验证不当) 详细描述:EVP_Cipher() API 调用用于 AEAD

AI 预测 7.5 利用难度: 困难

可能的 ATT&CK 技术 1 AI

T1059.007 · JavaScript
获取后续新漏洞提醒 登录后订阅

一、 漏洞 CVE-2026-75803 基础信息

漏洞信息

对漏洞内容有疑问?看看神龙的深度分析是否有帮助!
查看神龙十问 ↗

尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。

Vulnerability Title
AEAD Forgeries with Empty Ciphertext When Using EVP_Cipher()
来源: CVE Program / CVE List V5
Vulnerability Description
Issue summary: ChaCha20-Poly1305 and AES-OCB decryption with an empty ciphertext can report success without verifying the supplied authentication tag when the operation is finalized by calling the EVP_Cipher() function. Impact summary: Applications calling EVP_Cipher() on an empty ciphertext and expecting the call to check the AEAD tag may accept forged messages. CWE: CWE-354 (Improper Validation of Integrity Check Value) Description: The EVP_Cipher() API call for AEAD ciphers behaves like a one shot encryption and decryption call. It also verifies the AEAD tag after the decryption operation. However for AES-OCB and ChaCha20-Poly1305 ciphers it skipped the AEAD tag verification when an empty ciphertext was passed to the function. The callers of this function might believe that a successful return indicates a valid AEAD tag for these ciphers, even when that has not truly been validated in this case. FIPS impact: no The FIPS modules in 4.0, 3.6, 3.5, 3.4, and 3.0 are not affected by this CVE as the affected algorithms are not FIPS approved and thus not implemented in the FIPS module.
来源: CVE Program / CVE List V5
CVSS Information
N/A
来源: CVE Program / CVE List V5
Vulnerability Type
完整性检查值验证不恰当
来源: CVE Program / CVE List V5

受影响产品

厂商 产品 影响版本 CPE 订阅
OpenSSL OpenSSL 4.0.0 ~ 4.0.2 -

二、漏洞 CVE-2026-75803 的公开POC

# POC 描述 源链接 神龙链接
AI 生成 POC 高级

未找到公开 POC。

登录以生成 AI POC

三、漏洞 CVE-2026-75803 的情报信息

登录查看更多情报信息。

CVE-2026-75803 补丁与修复 (5)

CVE-2026-75803 厂商安全公告 (1)

同批安全公告 · OpenSSL · 2026-08-25 · 共 9 条

CVE-2026-18798 QUIC Server 处理初始包时可能触发双重释放漏洞
CVE-2026-54874 DTLS记录缓冲区过度内存使用漏洞
CVE-2026-63074 ExtraCerts 无限缓存增长漏洞
CVE-2026-63072 CMS 密钥解封装中的堆缓冲区溢出漏洞
CVE-2026-63073 CMP响应验证中未信任的发送者DN被用作格式字符串漏洞
CVE-2026-63075 QUIC ACK包保留可导致内存耗尽
CVE-2026-63076 CMP Server 保护算法构造指针解引用漏洞
CVE-2026-14457 RPK 服务器签名算法选择可导致引用缺失证书的漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2026-75803

暂无评论


发表评论