Логотип exploitDog
bind:"CVE-2009-2409" OR bind:"CVE-2009-4355"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2009-2409" OR bind:"CVE-2009-4355"

Количество 19

Количество 19

oracle-oval логотип

ELSA-2010-0054

больше 15 лет назад

ELSA-2010-0054: openssl security update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2009-4355

больше 15 лет назад

Memory leak in the zlib_stateful_finish function in crypto/comp/c_zlib.c in OpenSSL 0.9.8l and earlier and 1.0.0 Beta through Beta 4 allows remote attackers to cause a denial of service (memory consumption) via vectors that trigger incorrect calls to the CRYPTO_cleanup_all_ex_data function, as demonstrated by use of SSLv3 and PHP with the Apache HTTP Server, a related issue to CVE-2008-1678.

CVSS2: 5
EPSS: Средний
redhat логотип

CVE-2009-4355

больше 15 лет назад

Memory leak in the zlib_stateful_finish function in crypto/comp/c_zlib.c in OpenSSL 0.9.8l and earlier and 1.0.0 Beta through Beta 4 allows remote attackers to cause a denial of service (memory consumption) via vectors that trigger incorrect calls to the CRYPTO_cleanup_all_ex_data function, as demonstrated by use of SSLv3 and PHP with the Apache HTTP Server, a related issue to CVE-2008-1678.

CVSS2: 4.3
EPSS: Средний
nvd логотип

CVE-2009-4355

больше 15 лет назад

Memory leak in the zlib_stateful_finish function in crypto/comp/c_zlib.c in OpenSSL 0.9.8l and earlier and 1.0.0 Beta through Beta 4 allows remote attackers to cause a denial of service (memory consumption) via vectors that trigger incorrect calls to the CRYPTO_cleanup_all_ex_data function, as demonstrated by use of SSLv3 and PHP with the Apache HTTP Server, a related issue to CVE-2008-1678.

CVSS2: 5
EPSS: Средний
debian логотип

CVE-2009-4355

больше 15 лет назад

Memory leak in the zlib_stateful_finish function in crypto/comp/c_zlib ...

CVSS2: 5
EPSS: Средний
ubuntu логотип

CVE-2009-2409

почти 16 лет назад

The Network Security Services (NSS) library before 3.12.3, as used in Firefox; GnuTLS before 2.6.4 and 2.7.4; OpenSSL 0.9.8 through 0.9.8k; and other products support MD2 with X.509 certificates, which might allow remote attackers to spoof certificates by using MD2 design flaws to generate a hash collision in less than brute-force time. NOTE: the scope of this issue is currently limited because the amount of computation required is still large.

CVSS2: 5.1
EPSS: Низкий
redhat логотип

CVE-2009-2409

почти 16 лет назад

The Network Security Services (NSS) library before 3.12.3, as used in Firefox; GnuTLS before 2.6.4 and 2.7.4; OpenSSL 0.9.8 through 0.9.8k; and other products support MD2 with X.509 certificates, which might allow remote attackers to spoof certificates by using MD2 design flaws to generate a hash collision in less than brute-force time. NOTE: the scope of this issue is currently limited because the amount of computation required is still large.

CVSS2: 2.6
EPSS: Низкий
nvd логотип

CVE-2009-2409

почти 16 лет назад

The Network Security Services (NSS) library before 3.12.3, as used in Firefox; GnuTLS before 2.6.4 and 2.7.4; OpenSSL 0.9.8 through 0.9.8k; and other products support MD2 with X.509 certificates, which might allow remote attackers to spoof certificates by using MD2 design flaws to generate a hash collision in less than brute-force time. NOTE: the scope of this issue is currently limited because the amount of computation required is still large.

CVSS2: 5.1
EPSS: Низкий
debian логотип

CVE-2009-2409

почти 16 лет назад

The Network Security Services (NSS) library before 3.12.3, as used in ...

CVSS2: 5.1
EPSS: Низкий
github логотип

GHSA-cg3r-vf2p-3f9h

около 3 лет назад

Memory leak in the zlib_stateful_finish function in crypto/comp/c_zlib.c in OpenSSL 0.9.8l and earlier and 1.0.0 Beta through Beta 4 allows remote attackers to cause a denial of service (memory consumption) via vectors that trigger incorrect calls to the CRYPTO_cleanup_all_ex_data function, as demonstrated by use of SSLv3 and PHP with the Apache HTTP Server, a related issue to CVE-2008-1678.

EPSS: Средний
github логотип

GHSA-c2f9-w3c5-x385

около 3 лет назад

The Network Security Services (NSS) library before 3.12.3, as used in Firefox; GnuTLS before 2.6.4 and 2.7.4; OpenSSL 0.9.8 through 0.9.8k; and other products support MD2 with X.509 certificates, which might allow remote attackers to spoof certificates by using MD2 design flaws to generate a hash collision in less than brute-force time. NOTE: the scope of this issue is currently limited because the amount of computation required is still large.

EPSS: Низкий
oracle-oval логотип

ELSA-2010-0166

около 15 лет назад

ELSA-2010-0166: gnutls security update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2015-03444

больше 10 лет назад

Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

CVSS2: 7.5
EPSS: Низкий
fstec логотип

BDU:2015-03443

почти 16 лет назад

Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

CVSS2: 7.5
EPSS: Низкий
oracle-oval логотип

ELSA-2009-1186

почти 16 лет назад

ELSA-2009-1186: nspr and nss security, bug fix, and enhancement update (CRITICAL)

EPSS: Низкий
oracle-oval логотип

ELSA-2009-1184

почти 16 лет назад

ELSA-2009-1184: nspr and nss security and bug fix update (CRITICAL)

EPSS: Низкий
fstec логотип

BDU:2015-09404

больше 15 лет назад

Уязвимости операционной системы Gentoo Linux, позволяющие удаленному злоумышленнику нарушить целостность и доступность защищаемой информации

CVSS2: 5.8
EPSS: Низкий
fstec логотип

BDU:2015-09418

больше 13 лет назад

Уязвимости операционной системы Gentoo Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

CVSS3: 7.3
EPSS: Низкий
oracle-oval логотип

ELSA-2009-1584

больше 15 лет назад

ELSA-2009-1584: java-1.6.0-openjdk security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2010-0054

ELSA-2010-0054: openssl security update (MODERATE)

больше 15 лет назад
ubuntu логотип
CVE-2009-4355

Memory leak in the zlib_stateful_finish function in crypto/comp/c_zlib.c in OpenSSL 0.9.8l and earlier and 1.0.0 Beta through Beta 4 allows remote attackers to cause a denial of service (memory consumption) via vectors that trigger incorrect calls to the CRYPTO_cleanup_all_ex_data function, as demonstrated by use of SSLv3 and PHP with the Apache HTTP Server, a related issue to CVE-2008-1678.

CVSS2: 5
23%
Средний
больше 15 лет назад
redhat логотип
CVE-2009-4355

Memory leak in the zlib_stateful_finish function in crypto/comp/c_zlib.c in OpenSSL 0.9.8l and earlier and 1.0.0 Beta through Beta 4 allows remote attackers to cause a denial of service (memory consumption) via vectors that trigger incorrect calls to the CRYPTO_cleanup_all_ex_data function, as demonstrated by use of SSLv3 and PHP with the Apache HTTP Server, a related issue to CVE-2008-1678.

CVSS2: 4.3
23%
Средний
больше 15 лет назад
nvd логотип
CVE-2009-4355

Memory leak in the zlib_stateful_finish function in crypto/comp/c_zlib.c in OpenSSL 0.9.8l and earlier and 1.0.0 Beta through Beta 4 allows remote attackers to cause a denial of service (memory consumption) via vectors that trigger incorrect calls to the CRYPTO_cleanup_all_ex_data function, as demonstrated by use of SSLv3 and PHP with the Apache HTTP Server, a related issue to CVE-2008-1678.

CVSS2: 5
23%
Средний
больше 15 лет назад
debian логотип
CVE-2009-4355

Memory leak in the zlib_stateful_finish function in crypto/comp/c_zlib ...

CVSS2: 5
23%
Средний
больше 15 лет назад
ubuntu логотип
CVE-2009-2409

The Network Security Services (NSS) library before 3.12.3, as used in Firefox; GnuTLS before 2.6.4 and 2.7.4; OpenSSL 0.9.8 through 0.9.8k; and other products support MD2 with X.509 certificates, which might allow remote attackers to spoof certificates by using MD2 design flaws to generate a hash collision in less than brute-force time. NOTE: the scope of this issue is currently limited because the amount of computation required is still large.

CVSS2: 5.1
2%
Низкий
почти 16 лет назад
redhat логотип
CVE-2009-2409

The Network Security Services (NSS) library before 3.12.3, as used in Firefox; GnuTLS before 2.6.4 and 2.7.4; OpenSSL 0.9.8 through 0.9.8k; and other products support MD2 with X.509 certificates, which might allow remote attackers to spoof certificates by using MD2 design flaws to generate a hash collision in less than brute-force time. NOTE: the scope of this issue is currently limited because the amount of computation required is still large.

CVSS2: 2.6
2%
Низкий
почти 16 лет назад
nvd логотип
CVE-2009-2409

The Network Security Services (NSS) library before 3.12.3, as used in Firefox; GnuTLS before 2.6.4 and 2.7.4; OpenSSL 0.9.8 through 0.9.8k; and other products support MD2 with X.509 certificates, which might allow remote attackers to spoof certificates by using MD2 design flaws to generate a hash collision in less than brute-force time. NOTE: the scope of this issue is currently limited because the amount of computation required is still large.

CVSS2: 5.1
2%
Низкий
почти 16 лет назад
debian логотип
CVE-2009-2409

The Network Security Services (NSS) library before 3.12.3, as used in ...

CVSS2: 5.1
2%
Низкий
почти 16 лет назад
github логотип
GHSA-cg3r-vf2p-3f9h

Memory leak in the zlib_stateful_finish function in crypto/comp/c_zlib.c in OpenSSL 0.9.8l and earlier and 1.0.0 Beta through Beta 4 allows remote attackers to cause a denial of service (memory consumption) via vectors that trigger incorrect calls to the CRYPTO_cleanup_all_ex_data function, as demonstrated by use of SSLv3 and PHP with the Apache HTTP Server, a related issue to CVE-2008-1678.

23%
Средний
около 3 лет назад
github логотип
GHSA-c2f9-w3c5-x385

The Network Security Services (NSS) library before 3.12.3, as used in Firefox; GnuTLS before 2.6.4 and 2.7.4; OpenSSL 0.9.8 through 0.9.8k; and other products support MD2 with X.509 certificates, which might allow remote attackers to spoof certificates by using MD2 design flaws to generate a hash collision in less than brute-force time. NOTE: the scope of this issue is currently limited because the amount of computation required is still large.

2%
Низкий
около 3 лет назад
oracle-oval логотип
ELSA-2010-0166

ELSA-2010-0166: gnutls security update (MODERATE)

около 15 лет назад
fstec логотип
BDU:2015-03444

Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

CVSS2: 7.5
больше 10 лет назад
fstec логотип
BDU:2015-03443

Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

CVSS2: 7.5
почти 16 лет назад
oracle-oval логотип
ELSA-2009-1186

ELSA-2009-1186: nspr and nss security, bug fix, and enhancement update (CRITICAL)

почти 16 лет назад
oracle-oval логотип
ELSA-2009-1184

ELSA-2009-1184: nspr and nss security and bug fix update (CRITICAL)

почти 16 лет назад
fstec логотип
BDU:2015-09404

Уязвимости операционной системы Gentoo Linux, позволяющие удаленному злоумышленнику нарушить целостность и доступность защищаемой информации

CVSS2: 5.8
больше 15 лет назад
fstec логотип
BDU:2015-09418

Уязвимости операционной системы Gentoo Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

CVSS3: 7.3
больше 13 лет назад
oracle-oval логотип
ELSA-2009-1584

ELSA-2009-1584: java-1.6.0-openjdk security update (IMPORTANT)

больше 15 лет назад

Уязвимостей на страницу