Логотип exploitDog
bind:"GHSA-497c-86pp-222m" OR bind:"CVE-2018-0732"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-497c-86pp-222m" OR bind:"CVE-2018-0732"

Количество 34

Количество 34

github логотип

GHSA-497c-86pp-222m

больше 3 лет назад

During key agreement in a TLS handshake using a DH(E) based ciphersuite a malicious server can send a very large prime value to the client. This will cause the client to spend an unreasonably long period of time generating a key for this prime resulting in a hang until the client has finished. This could be exploited in a Denial Of Service attack. Fixed in OpenSSL 1.1.0i-dev (Affected 1.1.0-1.1.0h). Fixed in OpenSSL 1.0.2p-dev (Affected 1.0.2-1.0.2o).

CVSS3: 7.5
EPSS: Средний
ubuntu логотип

CVE-2018-0732

около 7 лет назад

During key agreement in a TLS handshake using a DH(E) based ciphersuite a malicious server can send a very large prime value to the client. This will cause the client to spend an unreasonably long period of time generating a key for this prime resulting in a hang until the client has finished. This could be exploited in a Denial Of Service attack. Fixed in OpenSSL 1.1.0i-dev (Affected 1.1.0-1.1.0h). Fixed in OpenSSL 1.0.2p-dev (Affected 1.0.2-1.0.2o).

CVSS3: 7.5
EPSS: Средний
redhat логотип

CVE-2018-0732

около 7 лет назад

During key agreement in a TLS handshake using a DH(E) based ciphersuite a malicious server can send a very large prime value to the client. This will cause the client to spend an unreasonably long period of time generating a key for this prime resulting in a hang until the client has finished. This could be exploited in a Denial Of Service attack. Fixed in OpenSSL 1.1.0i-dev (Affected 1.1.0-1.1.0h). Fixed in OpenSSL 1.0.2p-dev (Affected 1.0.2-1.0.2o).

CVSS3: 4.3
EPSS: Средний
nvd логотип

CVE-2018-0732

около 7 лет назад

During key agreement in a TLS handshake using a DH(E) based ciphersuite a malicious server can send a very large prime value to the client. This will cause the client to spend an unreasonably long period of time generating a key for this prime resulting in a hang until the client has finished. This could be exploited in a Denial Of Service attack. Fixed in OpenSSL 1.1.0i-dev (Affected 1.1.0-1.1.0h). Fixed in OpenSSL 1.0.2p-dev (Affected 1.0.2-1.0.2o).

CVSS3: 7.5
EPSS: Средний
debian логотип

CVE-2018-0732

около 7 лет назад

During key agreement in a TLS handshake using a DH(E) based ciphersuit ...

CVSS3: 7.5
EPSS: Средний
suse-cvrf логотип

openSUSE-SU-2018:3013-1

почти 7 лет назад

Security update for openssl-1_1

EPSS: Средний
suse-cvrf логотип

openSUSE-SU-2018:2129-1

около 7 лет назад

Security update for openssl-1_0_0

EPSS: Средний
suse-cvrf логотип

openSUSE-SU-2018:2117-1

около 7 лет назад

Security update for openssl-1_1

EPSS: Средний
suse-cvrf логотип

openSUSE-SU-2018:1906-1

около 7 лет назад

Security update for openssl

EPSS: Средний
suse-cvrf логотип

SUSE-SU-2018:2956-1

почти 7 лет назад

Security update for openssl-1_1

EPSS: Средний
suse-cvrf логотип

SUSE-SU-2018:2207-1

около 7 лет назад

Security update for openssl

EPSS: Средний
suse-cvrf логотип

SUSE-SU-2018:2041-1

около 7 лет назад

Security update for openssl-1_1

EPSS: Средний
suse-cvrf логотип

SUSE-SU-2018:2036-1

около 7 лет назад

Security update for openssl-1_1

EPSS: Средний
suse-cvrf логотип

SUSE-SU-2018:1968-1

около 7 лет назад

Security update for openssl

EPSS: Средний
suse-cvrf логотип

SUSE-SU-2018:1887-2

почти 7 лет назад

Security update for openssl

EPSS: Средний
suse-cvrf логотип

SUSE-SU-2018:1887-1

около 7 лет назад

Security update for openssl

EPSS: Средний
fstec логотип

BDU:2019-00186

около 7 лет назад

Уязвимость библиотеки OpenSSL, связанная с ошибками обработки криптографических ключей при использовании протокола DH (E), позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Средний
suse-cvrf логотип

openSUSE-SU-2018:3015-1

почти 7 лет назад

Security update for openssl-1_0_0

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2018:2855-1

почти 7 лет назад

Security update for nodejs8

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2018:2816-1

почти 7 лет назад

Security update for nodejs6

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-497c-86pp-222m

During key agreement in a TLS handshake using a DH(E) based ciphersuite a malicious server can send a very large prime value to the client. This will cause the client to spend an unreasonably long period of time generating a key for this prime resulting in a hang until the client has finished. This could be exploited in a Denial Of Service attack. Fixed in OpenSSL 1.1.0i-dev (Affected 1.1.0-1.1.0h). Fixed in OpenSSL 1.0.2p-dev (Affected 1.0.2-1.0.2o).

CVSS3: 7.5
51%
Средний
больше 3 лет назад
ubuntu логотип
CVE-2018-0732

During key agreement in a TLS handshake using a DH(E) based ciphersuite a malicious server can send a very large prime value to the client. This will cause the client to spend an unreasonably long period of time generating a key for this prime resulting in a hang until the client has finished. This could be exploited in a Denial Of Service attack. Fixed in OpenSSL 1.1.0i-dev (Affected 1.1.0-1.1.0h). Fixed in OpenSSL 1.0.2p-dev (Affected 1.0.2-1.0.2o).

CVSS3: 7.5
51%
Средний
около 7 лет назад
redhat логотип
CVE-2018-0732

During key agreement in a TLS handshake using a DH(E) based ciphersuite a malicious server can send a very large prime value to the client. This will cause the client to spend an unreasonably long period of time generating a key for this prime resulting in a hang until the client has finished. This could be exploited in a Denial Of Service attack. Fixed in OpenSSL 1.1.0i-dev (Affected 1.1.0-1.1.0h). Fixed in OpenSSL 1.0.2p-dev (Affected 1.0.2-1.0.2o).

CVSS3: 4.3
51%
Средний
около 7 лет назад
nvd логотип
CVE-2018-0732

During key agreement in a TLS handshake using a DH(E) based ciphersuite a malicious server can send a very large prime value to the client. This will cause the client to spend an unreasonably long period of time generating a key for this prime resulting in a hang until the client has finished. This could be exploited in a Denial Of Service attack. Fixed in OpenSSL 1.1.0i-dev (Affected 1.1.0-1.1.0h). Fixed in OpenSSL 1.0.2p-dev (Affected 1.0.2-1.0.2o).

CVSS3: 7.5
51%
Средний
около 7 лет назад
debian логотип
CVE-2018-0732

During key agreement in a TLS handshake using a DH(E) based ciphersuit ...

CVSS3: 7.5
51%
Средний
около 7 лет назад
suse-cvrf логотип
openSUSE-SU-2018:3013-1

Security update for openssl-1_1

51%
Средний
почти 7 лет назад
suse-cvrf логотип
openSUSE-SU-2018:2129-1

Security update for openssl-1_0_0

51%
Средний
около 7 лет назад
suse-cvrf логотип
openSUSE-SU-2018:2117-1

Security update for openssl-1_1

51%
Средний
около 7 лет назад
suse-cvrf логотип
openSUSE-SU-2018:1906-1

Security update for openssl

51%
Средний
около 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2956-1

Security update for openssl-1_1

51%
Средний
почти 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2207-1

Security update for openssl

51%
Средний
около 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2041-1

Security update for openssl-1_1

51%
Средний
около 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2036-1

Security update for openssl-1_1

51%
Средний
около 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:1968-1

Security update for openssl

51%
Средний
около 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:1887-2

Security update for openssl

51%
Средний
почти 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:1887-1

Security update for openssl

51%
Средний
около 7 лет назад
fstec логотип
BDU:2019-00186

Уязвимость библиотеки OpenSSL, связанная с ошибками обработки криптографических ключей при использовании протокола DH (E), позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
51%
Средний
около 7 лет назад
suse-cvrf логотип
openSUSE-SU-2018:3015-1

Security update for openssl-1_0_0

почти 7 лет назад
suse-cvrf логотип
openSUSE-SU-2018:2855-1

Security update for nodejs8

почти 7 лет назад
suse-cvrf логотип
openSUSE-SU-2018:2816-1

Security update for nodejs6

почти 7 лет назад

Уязвимостей на страницу