Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-1378

Опубликовано: 19 мая 2009
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 5

Описание

Multiple memory leaks in the dtls1_process_out_of_seq_message function in ssl/d1_both.c in OpenSSL 0.9.8k and earlier 0.9.8 versions allow remote attackers to cause a denial of service (memory consumption) via DTLS records that (1) are duplicates or (2) have sequence numbers much greater than current sequence numbers, aka "DTLS fragment handling memory leak."

РелизСтатусПримечание
dapper

released

0.9.8a-7ubuntu0.9
devel

released

0.9.8g-16ubuntu2
hardy

released

0.9.8g-4ubuntu3.7
intrepid

released

0.9.8g-10.1ubuntu2.4
jaunty

released

0.9.8g-15ubuntu3.2
upstream

needs-triage

Показывать по

EPSS

Процентиль: 94%
0.15693
Средний

5 Medium

CVSS2

Связанные уязвимости

redhat
больше 16 лет назад

Multiple memory leaks in the dtls1_process_out_of_seq_message function in ssl/d1_both.c in OpenSSL 0.9.8k and earlier 0.9.8 versions allow remote attackers to cause a denial of service (memory consumption) via DTLS records that (1) are duplicates or (2) have sequence numbers much greater than current sequence numbers, aka "DTLS fragment handling memory leak."

nvd
больше 16 лет назад

Multiple memory leaks in the dtls1_process_out_of_seq_message function in ssl/d1_both.c in OpenSSL 0.9.8k and earlier 0.9.8 versions allow remote attackers to cause a denial of service (memory consumption) via DTLS records that (1) are duplicates or (2) have sequence numbers much greater than current sequence numbers, aka "DTLS fragment handling memory leak."

debian
больше 16 лет назад

Multiple memory leaks in the dtls1_process_out_of_seq_message function ...

github
больше 3 лет назад

Multiple memory leaks in the dtls1_process_out_of_seq_message function in ssl/d1_both.c in OpenSSL 0.9.8k and earlier 0.9.8 versions allow remote attackers to cause a denial of service (memory consumption) via DTLS records that (1) are duplicates or (2) have sequence numbers much greater than current sequence numbers, aka "DTLS fragment handling memory leak."

fstec
почти 16 лет назад

Уязвимости операционной системы Gentoo Linux, позволяющие удаленному злоумышленнику нарушить целостность и доступность защищаемой информации

EPSS

Процентиль: 94%
0.15693
Средний

5 Medium

CVSS2