Описание
ssl/s3_pkt.c in OpenSSL before 0.9.8i allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a DTLS ChangeCipherSpec packet that occurs before ClientHello.
Ссылки
- Broken LinkThird Party Advisory
- Broken LinkPatchThird Party Advisory
- Broken LinkThird Party Advisory
- Broken LinkThird Party Advisory
- Third Party Advisory
- Mailing ListThird Party Advisory
- Third Party AdvisoryVendor Advisory
- Not ApplicableThird Party Advisory
- Not ApplicableThird Party Advisory
- Not ApplicableThird Party Advisory
- Not ApplicableThird Party Advisory
- Not ApplicableThird Party Advisory
- Third Party Advisory
- Mailing ListThird Party Advisory
- Third Party Advisory
- Broken LinkExploitThird Party AdvisoryVDB Entry
- Third Party Advisory
- Permissions RequiredThird Party Advisory
- Third Party AdvisoryVDB Entry
- Broken LinkTool Signature
Уязвимые конфигурации
Одно из
Одно из
EPSS
5 Medium
CVSS2
Дефекты
Связанные уязвимости
ssl/s3_pkt.c in OpenSSL before 0.9.8i allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a DTLS ChangeCipherSpec packet that occurs before ClientHello.
ssl/s3_pkt.c in OpenSSL before 0.9.8i allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a DTLS ChangeCipherSpec packet that occurs before ClientHello.
ssl/s3_pkt.c in OpenSSL before 0.9.8i allows remote attackers to cause ...
ssl/s3_pkt.c in OpenSSL before 0.9.8i allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a DTLS ChangeCipherSpec packet that occurs before ClientHello.
ELSA-2009-1335: openssl security, bug fix, and enhancement update (MODERATE)
EPSS
5 Medium
CVSS2