<?xml version="1.0" encoding="UTF-8"?>
<cvrf:cvrfdoc xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema" xmlns:cvrf-common="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/common" xmlns:cvrf="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/cvrf">
    <cvrf:DocumentTitle>TLS FREAK Attack</cvrf:DocumentTitle>
    <cvrf:DocumentType>Fortinet PSIRT Advisories</cvrf:DocumentType>
    <cvrf:DocumentPublisher Type="Vendor">
        <cvrf:ContactDetails>
            Fortinet PSIRT Contact:
            Website: https://fortiguard.fortinet.com/faq/psirt-contact
        </cvrf:ContactDetails>
     </cvrf:DocumentPublisher>
    <cvrf:DocumentTracking>
        <cvrf:Identification>
            <cvrf:ID>FG-IR-15-007</cvrf:ID>
        </cvrf:Identification>
        <cvrf:Status>Final</cvrf:Status>
        <cvrf:Version>1</cvrf:Version>
        <cvrf:RevisionHistory>
            <cvrf:Revision>
                <cvrf:Number>1</cvrf:Number>
                <cvrf:Date>2015-03-04T00:00:00</cvrf:Date>
                <cvrf:Description>Current version</cvrf:Description>
        </cvrf:Revision>
       </cvrf:RevisionHistory>
        <cvrf:InitialReleaseDate>2015-03-04T00:00:00</cvrf:InitialReleaseDate>
        <cvrf:CurrentReleaseDate>2015-03-04T00:00:00</cvrf:CurrentReleaseDate>
    </cvrf:DocumentTracking>
    <cvrf:DocumentNotes>
        <cvrf:Note Title="Description" Type="General" Ordinal="1">
            FREAK is an attack on SSL/TLS, which allows &#34;Man in the Middle&#34; attackers to decipher and alter HTTPS connections between a server supporting &#34;export-grade&#34; cipher suites and a vulnerable client. It consists in downgrading the connection&#39;s encryption from &#34;strong&#34; RSA to &#34;export-grade&#34; RSA, by leveraging a vulnerability (CVE-2015-0204) on the client side.The &#34;export-grade&#34; encryption is weak enough to be broken by the attacker, who can then decipher and alter the connection.
        </cvrf:Note>
        <cvrf:Note Title="Impact" Type="General" Ordinal="2">
            Information disclosure
        </cvrf:Note>
        <cvrf:Note Title="Affected Products" Type="General" Ordinal="3">
            Affected products:FortiOS 5.2.2 and earlier allow SSL connections that pass-through the SSLVPN web-mode feature with export-grade ciphers if remote HTTPS end servers are vulnerable to FREAK.Other FortiOS features are not affected by TLS FREAK.FortiMail all versions, in its default configuration (see solutions below).Products confirmed not affected:AscenLinkFortiADCFortiAnalyzerFortiAuthenticatorFortiCacheFortiClientFortiDBFortiDDoSFortiManagerFortiSandboxFortiVoiceFortiWeb
        </cvrf:Note>
        <cvrf:Note Title="Solutions" Type="General" Ordinal="4">
            FortiGateUpgrade to FortiOS 5.2.3 / 5.0.11For FortiOS 4.3.x, 5.0.x, 5.2.0 and 5.2.1, a full workaround consists in enabling strong-crypto:config system global set strong-crypto enable end For FortiOS 5.2.2, a workaround for customers using the FortiGate SSL-VPN portal web mode feature should verify the HTTPS websites that are allowed through the bookmarks and connection info widgets.Verification steps:Bookmarks: Go to VPN &gt; SSL &gt; Portal menu and check HTTPS bookmarks in SSLVPN profiles that offer web mode.Connection info: Review the destination addresses included in the firewall policies with an SSL-VPN portal in web mode assigned.If one or more HTTPS websites are not patched against the FREAK vulnerability, Fortinet PSIRT advise customers to disable bookmark or restrict the allowed destination addresses in order to remove access to vulnerable remote web servers.FortiGate IPS signatureFortiGate can protect SSL connections against the downgrade attack.Make sure the IPS signature called SSL.RSA.Temporary.Key.Security.Bypass is enabled. It is available in IPS update 5.619.FortiMailThe following command must be set to prevent weak ciphers to be negotiated on FortiMail with default configuration:config system globalset strong-crypto enableend
        </cvrf:Note>
    </cvrf:DocumentNotes>
    <cvrf:DocumentReferences>
        <cvrf:Reference>
            <cvrf:URL>https://fortiguard.fortinet.com/psirt/FG-IR-15-007</cvrf:URL>
            <cvrf:Description>TLS FREAK Attack</cvrf:Description>
        </cvrf:Reference>
        <cvrf:Reference>
            <cvrf:URL>https://freakattack.com/</cvrf:URL>
            <cvrf:Description>https://freakattack.com/</cvrf:Description>
        </cvrf:Reference>
    </cvrf:DocumentReferences>
    <Vulnerability Ordinal="1">
        <Title>TLS FREAK Attack</Title>
        <cvrf:CVE>CVE-2015-0204</cvrf:CVE>
        <References Type="Self">
            <Reference>
                <URL>https://fortiguard.fortinet.com/psirt/FG-IR-15-007</URL>
                <Description>TLS FREAK Attack</Description>
            </Reference>Reference>
            <Reference>
                <URL>https://freakattack.com/</URL>
                <Description>https://freakattack.com/</Description>
            </Reference>
        </References>
    </Vulnerability>
</cvrf:cvrfdoc>