Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2009-5009

Опубликовано: 14 окт. 2010
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

Double free vulnerability in OpenConnect before 1.40 might allow remote AnyConnect SSL VPN servers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted DTLS Cipher option during a reconnect operation.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:infradead:openconnect:*:*:*:*:*:*:*:*
Версия до 1.30 (включая)
cpe:2.3:a:infradead:openconnect:1.00:*:*:*:*:*:*:*
cpe:2.3:a:infradead:openconnect:1.10:*:*:*:*:*:*:*
cpe:2.3:a:infradead:openconnect:1.20:*:*:*:*:*:*:*

EPSS

Процентиль: 53%
0.00305
Низкий

5 Medium

CVSS2

Дефекты

CWE-399

Связанные уязвимости

ubuntu
около 15 лет назад

Double free vulnerability in OpenConnect before 1.40 might allow remote AnyConnect SSL VPN servers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted DTLS Cipher option during a reconnect operation.

debian
около 15 лет назад

Double free vulnerability in OpenConnect before 1.40 might allow remot ...

github
больше 3 лет назад

Double free vulnerability in OpenConnect before 1.40 might allow remote AnyConnect SSL VPN servers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted DTLS Cipher option during a reconnect operation.

EPSS

Процентиль: 53%
0.00305
Низкий

5 Medium

CVSS2

Дефекты

CWE-399