---
cve: "CVE-2022-4304"
severity: "MEDIUM"
cvss: 5.9
epss: "16.2%"
vendor: "OpenSSL"
kev: false
exploited: false
published: "2023-02-08 20:15:23"
tags: [cve, security, medium]
source: tsecurity.de CVE-Dossier
exported: "2026-09-19T02:41:48+02:00"
---

# CVE-2022-4304

> 5.9 MEDIUM

## Beschreibung

A timing based side channel exists in the OpenSSL RSA Decryption implementation
which could be sufficient to recover a plaintext across a network in a
Bleichenbacher style attack. To achieve a successful decryption an attacker
would have to be able to send a very large number of trial messages for
decryption. The vulnerability affects all RSA padding modes: PKCS#1 v1.5,
RSA-OEAP and RSASVE.

For example, in a TLS connection, RSA is commonly used by a client to send an
encrypted pre-master secret to the server. An attacker that had observed a
genuine connection between a client and a server could use this flaw to send
trial messages to the server and record the time taken to process them. After a
sufficiently large number of messages the attacker could recover the pre-master
secret used for the original connection and thus be able to decrypt the
application data sent over that connection.

## CVSS-Vektor

```
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
```

| Metrik | Wert | Bewertung |
|---|---|---|
| AV Angriffsvektor | Netzwerk | bad |
| AC Komplexität | Hoch | good |
| PR Privilegien | Keine | bad |
| UI Interaktion | Keine | bad |
| S Scope | Unverändert | good |
| C Vertraulichkeit | Hoch | bad |
| I Integrität | Keine | good |
| A Verfügbarkeit | Keine | good |

## Patch verfügbar (OSV)

- e818b74be2170fbe957a07b0da4401c2b694b3b8 (Commit)
- e04bd3433fd84e1861bf258ea37928d9845e6a86 (Commit)

## Referenzen

- <https://www.openssl.org/news/secadv/20230207.txt>
- <https://security.gentoo.org/glsa/202402-08>
- <https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2023-0003>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2022-4304) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
