Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-9424

Опубликовано: 29 дек. 2014
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

Double free vulnerability in the ssl_parse_clienthello_use_srtp_ext function in d1_srtp.c in LibreSSL before 2.1.2 allows remote attackers to cause a denial of service or possibly have unspecified other impact by triggering a certain length-verification error during processing of a DTLS handshake.

Комментарий

CWE-415: Double Free

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:openbsd:libressl:*:*:*:*:*:*:*:*
Версия до 2.1.1 (включая)

EPSS

Процентиль: 64%
0.0046
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

redhat
около 11 лет назад

Double free vulnerability in the ssl_parse_clienthello_use_srtp_ext function in d1_srtp.c in LibreSSL before 2.1.2 allows remote attackers to cause a denial of service or possibly have unspecified other impact by triggering a certain length-verification error during processing of a DTLS handshake.

debian
около 11 лет назад

Double free vulnerability in the ssl_parse_clienthello_use_srtp_ext fu ...

github
больше 3 лет назад

Double free vulnerability in the ssl_parse_clienthello_use_srtp_ext function in d1_srtp.c in LibreSSL before 2.1.2 allows remote attackers to cause a denial of service or possibly have unspecified other impact by triggering a certain length-verification error during processing of a DTLS handshake.

EPSS

Процентиль: 64%
0.0046
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other