Apple and Google prepare patches for FREAK SSL flaw


Here is the text of an article describing what it is an what it can do. Very critical because if your Android or Apple phone or tablet is used for any purchases and/or banking, they can get between. It does not affect Windows.




"A new web crypto bug is affecting many Safari and Android users. Who's going to get the fix first?


Apple and Google are preparing patches for a newly-revealed bug in the web encryption protocols used by the two companies' mobile browsers.


The FREAK bug disclosed yesterday is the latest in a series of vulnerabilities affecting the Secure Sockets Layer (SSL) and Transport Layer Security (TLS) protocols used to encrypt traffic between an HTTPS website and a browser.

A man-in-the-middle attacker can force connections between affected browsers and websites to downgrade from 'strong' RSA encryption to a weaker version known as 'export grade' RSA. That weaker version is a by-product of laws from the 1990s that made it illegal to export from the US products with strong cryptography.


Thousands of sites are vulnerable, including that of the US National Security Agency - the same agency that pushed for weaker export grade encryption, according to Ed Felten, director of Princeton's Center for Information Technology Policy.


"There is an important lesson here about the consequences of crypto policy decisions: the NSA's actions in the '90s to weaken exportable cryptography boomeranged on the agency, undermining the security of its own site twenty years later," Felten wrote on his blog yesterday.


The bug affects SSL/TLS servers and clients, in particular OpenSSL browsers, such as the Android browser that shipped with all Android devices before version 4.4 KitKat, according to the researchers at INRIA in Paris who discovered the flaw. KitKat, which shipped with Chrome as the default, currently accounts for about 40 percent of all Android devices, but that still means the bulk of Android devices are affected.


Apple's Safari browser on desktop systems and mobile devices is also affected. However, Chrome is not affected and nor are Internet

Explorer and Firefox.


According to Reuters, Apple is developing patches for the bug and will push them out next week. Asked to confirm the timing of the patch, Apple directed ZDNet to a Washington Post article.


A patch for Android users is likely to take a longer time to arrive. Google told Reuters it had provided a fix to its Android partners such as handset makers and carriers, however it's not clear if or when those partners will push the patch to end-users.


Google had not responded to request for comment at the time of publication"


The full article with links to the WP and other articles on it is here:


If you thought the FREAK flaw only affected Apple and Android devices, here's what Microsoft said today:


The flaw was previously thought to be limited to Apple's Safari and Google's Android browsers. But Microsoft warned that the encryption protocols used in Windows -- Secure Sockets Layer and its successor Transport Layer Security -- were also vulnerable to the flaw.

"Our investigation has verified that the vulnerability could allow an attacker to force the downgrading of the cipher suites used in an SSL/TLS connection on a Windows client system," Microsoft said in itsadvisory. "The vulnerability facilitates exploitation of the publicly disclosed FREAK technique, which is an industrywide issue that is not specific to Windows operating systems."

Microsoft said it will likely address the flaw in its regularly scheduled Patch Tuesday update or with an out-of-cycle patch. In the meantime, Microsoft suggested disabling the RSA export ciphers.

Here's the whole article: http://www.cnet.com/au/news/windows-vulnerable-to-freak-encryption-flaw-too/

Here's a list of recommendations that people can adopt now to protect themselves from this vulnerability:


In addition, according to the miTLS Team, which discovered this decrepit FREAK security hole in the first place, the following SSL/TLS client libraries, are vulnerable.

  • OpenSSL (CVE-2015-0204): versions before 1.0.1k.
  • BoringSSL: versions before Nov 10, 2014.
  • LibReSSL: versions before 2.1.2.
  • SecureTransport: is vulnerable. A fix is being tested.
  • SChannel: is vulnerable. A fix is being tested.

Web browsers that use these TLS libraries are open to attack. These include:

  • Chrome versions before 41 on various platforms are vulnerable. (Chrome V.41 is available now)
  • Internet Explorer. Wait for a patch, switch to Firefox or Chrome 41, or disable RSA key exchange as detailed below using the Group Policy Object Editor
  • Safari is vulnerable. Wait for a patch, switch to Firefox or Chrome 41.
  • Android Browser is vulnerable. Switch to Chrome 41.
  • Blackberry Browser is vulnerable. Wait for a patch.
  • Opera on Mac and Android is vulnerable. Update to Opera 28 (when stable), switch to Chrome 41.

The entire article is located here: http://www.zdnet.com/article/how-to-protect-yourself-against-freak/

