Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-3210

Опубликовано: 22 сент. 2011
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5

Описание

The ephemeral ECDH ciphersuite functionality in OpenSSL 0.9.8 through 0.9.8r and 1.0.x before 1.0.0e does not ensure thread safety during processing of handshake messages from clients, which allows remote attackers to cause a denial of service (daemon crash) via out-of-order messages that violate the TLS protocol.

РелизСтатусПримечание
devel

not-affected

1.0.0e-2ubuntu1
hardy

released

0.9.8g-4ubuntu3.15
lucid

released

0.9.8k-7ubuntu8.8
maverick

released

0.9.8o-1ubuntu4.6
natty

released

0.9.8o-5ubuntu1.2
oneiric

not-affected

1.0.0e-2ubuntu1
upstream

released

1.0.0e

Показывать по

EPSS

Процентиль: 91%
0.07205
Низкий

5 Medium

CVSS2

Связанные уязвимости

redhat
почти 14 лет назад

The ephemeral ECDH ciphersuite functionality in OpenSSL 0.9.8 through 0.9.8r and 1.0.x before 1.0.0e does not ensure thread safety during processing of handshake messages from clients, which allows remote attackers to cause a denial of service (daemon crash) via out-of-order messages that violate the TLS protocol.

nvd
больше 13 лет назад

The ephemeral ECDH ciphersuite functionality in OpenSSL 0.9.8 through 0.9.8r and 1.0.x before 1.0.0e does not ensure thread safety during processing of handshake messages from clients, which allows remote attackers to cause a denial of service (daemon crash) via out-of-order messages that violate the TLS protocol.

debian
больше 13 лет назад

The ephemeral ECDH ciphersuite functionality in OpenSSL 0.9.8 through ...

github
около 3 лет назад

The ephemeral ECDH ciphersuite functionality in OpenSSL 0.9.8 through 0.9.8r and 1.0.x before 1.0.0e does not ensure thread safety during processing of handshake messages from clients, which allows remote attackers to cause a denial of service (daemon crash) via out-of-order messages that violate the TLS protocol.

CVSS3: 7.3
fstec
больше 13 лет назад

Уязвимости операционной системы Gentoo Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 91%
0.07205
Низкий

5 Medium

CVSS2