Skip to content
AWSGHSA-m74w-59v6-c5r8

Issue with configuring session ticket names in s2n-tls

MediumPublished Sep 27, 2022

A bug in s2n-tls results in the inadvertent copying of memory when configuring session ticket names. As a result, s2n-tls servers which set a session ticket name with length less than 16 bytes can potentially disclose some random memory. Servers which set a 16-byte name are unaffected. No AWS service was affected by this issue and customers of AWS services do not need to take action. Server applications using s2n-tls with session resumption should update to the most recent version. All versions of s2n-tls from commit cc339f5 to c947a221e1caadf12a262a6bf548f5f082e096be are affected by this issue. s2n-tls users should fetch s2n-tls commit e6e8b6ad2db5c21a95df05e2367654b3d4c08846.

GitHub advisory

Affected versions

PackageAffectedFixed in
s2n-tls
Product
< v1.3.23v1.3.23
Details and references

More AWS advisories

All AWS
Advisory
Issue with parsing Certificate Common Name (CN) in s2n-tls
LowFeb 14, 2023
Privilege Escalation Vector in CloudWatch Agent for Windows
High7.1Dec 10, 2022
Server denial-of-service by using sslv2 message format in a HelloRetryRequest handshake
LowSep 27, 2022
Partial Path Traversal in aws-cpp-sdk-transfer
MediumAug 9, 2022
Partial Path Traversal in com.amazonaws:aws-java-sdk-s3
High7.9Jul 15, 2022
Security vulnerability in a third party software, Slurm < 20.11.9 and 21.08.8
CriticalMay 16, 2022

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.