Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-0591

Опубликовано: 27 мар. 2009
Источник: ubuntu
Приоритет: low
CVSS2: 2.6

Описание

The CMS_verify function in OpenSSL 0.9.8h through 0.9.8j, when CMS is enabled, does not properly handle errors associated with malformed signed attributes, which allows remote attackers to repudiate a signature that originally appeared to be valid but was actually invalid.

РелизСтатусПримечание
dapper

not-affected

0.9.8a-7ubuntu0.6
devel

not-affected

0.9.8g-15ubuntu1
gutsy

not-affected

0.9.8e-5ubuntu3.3
hardy

not-affected

0.9.8g-4ubuntu3.4
intrepid

not-affected

0.9.8g-10.1ubuntu2.1
upstream

released

0.9.8k

Показывать по

2.6 Low

CVSS2

Связанные уязвимости

redhat
больше 16 лет назад

The CMS_verify function in OpenSSL 0.9.8h through 0.9.8j, when CMS is enabled, does not properly handle errors associated with malformed signed attributes, which allows remote attackers to repudiate a signature that originally appeared to be valid but was actually invalid.

nvd
больше 16 лет назад

The CMS_verify function in OpenSSL 0.9.8h through 0.9.8j, when CMS is enabled, does not properly handle errors associated with malformed signed attributes, which allows remote attackers to repudiate a signature that originally appeared to be valid but was actually invalid.

debian
больше 16 лет назад

The CMS_verify function in OpenSSL 0.9.8h through 0.9.8j, when CMS is ...

github
больше 3 лет назад

The CMS_verify function in OpenSSL 0.9.8h through 0.9.8j, when CMS is enabled, does not properly handle errors associated with malformed signed attributes, which allows remote attackers to repudiate a signature that originally appeared to be valid but was actually invalid.

2.6 Low

CVSS2