CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.9. Its EPSS score suggests a 22.1% probability of exploitation in the next 30 days.
CVE
CVE-2017-1000385
Severity
MEDIUM
CVSS
5.9
EPSS
22.10%
Original NVD Description
The Erlang otp TLS server answers with different TLS alerts to different error types in the RSA PKCS #1 1.5 padding. This allows an attacker to decrypt content or sign messages with the server's private key (this is a variation of the Bleichenbacher attack).
Related CVEs
Other vulnerabilities affecting the same vendor(s)