CVE-2006-5201 describes a cryptographic vulnerability affecting multiple Sun Solaris packages, including NSS, Java JDK/JRE, JSSE, IPSec/IKE, Secure Global Desktop, and StarOffice. When using an RSA key with exponent 3, these products incorrectly remove PKCS-1 padding before hashing, enabling remote attackers to forge PKCS #1 v1.5 signatures. This flaw prevents proper verification of X.509 and other certificates. The vulnerability has a CVSS score of 4.0, indicating a network-based attack with high complexity, potentially leading to partial integrity and availability impacts. Its EPSS score is very low, suggesting minimal exploitability in the wild. There is no evidence of active exploitation, and no public exploit code exists in Metasploit, Nuclei, or ExploitDB. Community discussion and media coverage for this CVE are virtually nonexistent, indicating a lack of widespread attention or exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:a:sun:nss:*:*:*:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:a:sun:secure_global_desktop:*:*:*:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:a:sun:staroffice:*:*:*:*:*:*:*:* | ||
9.0CPE matchmatch criteria | cpe:2.3:o:sun:solaris:9.0:*:*:*:*:sparc:*:* | ||
10.0CPE matchmatch criteria | cpe:2.3:o:sun:solaris:10.0:*:*:*:*:sparc:*:* |
CVSS version used by this source: 2.0
AV:N/AC:H/Au:N/C:N/I:P/A:P
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
CVE-2006-5201
Sep 8, 2020Multiple packages on Sun Solaris including (1) NSS; (2) Java JDK and JRE 5.0 Update 8 and earlier SDK and JRE 1.4.x up to 1.4.2_12 and SDK and JRE 1.3.x up to 1.3.1_19; (3) JSSE 1.0.3_03 and earlier; (4) IPSec/IKE; (5) Secure Global Desktop; and (6) StarOffice when using an RSA key with exponent 3 removes PKCS-1 padding before generating a hash which allows remote attackers to forge a PKCS #1 v1.5 signature that is signed by that RSA key and prevents these products from correctly verifying X.509 and other certificates that use PKCS #1.
Oct 2, 2006