ubuntu · CVE-2016-2183

Quick triage

Priority: low Published: 2016-08-31 00:00:00 UTC Updated: 2025-08-25 21:56:50 UTC

View at Official ubuntu advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2016-2183 low priority: Ubuntu including 8 source packages (gnutls26, gnutls28, …), 80 status rows across 10 suites (artful, bionic, cosmic, disco, precise, trusty, upstream, xenial, yakkety, zesty): DNE 32, released 24, not-affected 17, needs-triage 5, ignored 2.

Description:

The DES and Triple DES ciphers, as used in the TLS, SSH, and IPSec protocols and other protocols and products, have a birthday bound of approximately four billion blocks, which makes it easier for remote attackers to obtain cleartext data via a birthday attack against a long-duration encrypted session, as demonstrated by an HTTPS session using Triple DES in CBC mode, aka a "Sweet32" attack.

cvelogic Threat Intelligence