Логотип exploitDog
bind:CVE-2010-0433
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2010-0433

Количество 7

Количество 7

ubuntu логотип

CVE-2010-0433

больше 15 лет назад

The kssl_keytab_is_available function in ssl/kssl.c in OpenSSL before 0.9.8n, when Kerberos is enabled but Kerberos configuration files cannot be opened, does not check a certain return value, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via SSL cipher negotiation, as demonstrated by a chroot installation of Dovecot or stunnel without Kerberos configuration files inside the chroot.

CVSS2: 4.3
EPSS: Средний
redhat логотип

CVE-2010-0433

больше 15 лет назад

The kssl_keytab_is_available function in ssl/kssl.c in OpenSSL before 0.9.8n, when Kerberos is enabled but Kerberos configuration files cannot be opened, does not check a certain return value, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via SSL cipher negotiation, as demonstrated by a chroot installation of Dovecot or stunnel without Kerberos configuration files inside the chroot.

CVSS2: 4.3
EPSS: Средний
nvd логотип

CVE-2010-0433

больше 15 лет назад

The kssl_keytab_is_available function in ssl/kssl.c in OpenSSL before 0.9.8n, when Kerberos is enabled but Kerberos configuration files cannot be opened, does not check a certain return value, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via SSL cipher negotiation, as demonstrated by a chroot installation of Dovecot or stunnel without Kerberos configuration files inside the chroot.

CVSS2: 4.3
EPSS: Средний
debian логотип

CVE-2010-0433

больше 15 лет назад

The kssl_keytab_is_available function in ssl/kssl.c in OpenSSL before ...

CVSS2: 4.3
EPSS: Средний
github логотип

GHSA-5gv7-x3p9-2mf6

больше 3 лет назад

The kssl_keytab_is_available function in ssl/kssl.c in OpenSSL before 0.9.8n, when Kerberos is enabled but Kerberos configuration files cannot be opened, does not check a certain return value, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via SSL cipher negotiation, as demonstrated by a chroot installation of Dovecot or stunnel without Kerberos configuration files inside the chroot.

EPSS: Средний
oracle-oval логотип

ELSA-2010-0162

больше 15 лет назад

ELSA-2010-0162: openssl security update (IMPORTANT)

EPSS: Низкий
fstec логотип

BDU:2015-09418

почти 14 лет назад

Уязвимости операционной системы Gentoo Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

CVSS3: 7.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2010-0433

The kssl_keytab_is_available function in ssl/kssl.c in OpenSSL before 0.9.8n, when Kerberos is enabled but Kerberos configuration files cannot be opened, does not check a certain return value, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via SSL cipher negotiation, as demonstrated by a chroot installation of Dovecot or stunnel without Kerberos configuration files inside the chroot.

CVSS2: 4.3
11%
Средний
больше 15 лет назад
redhat логотип
CVE-2010-0433

The kssl_keytab_is_available function in ssl/kssl.c in OpenSSL before 0.9.8n, when Kerberos is enabled but Kerberos configuration files cannot be opened, does not check a certain return value, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via SSL cipher negotiation, as demonstrated by a chroot installation of Dovecot or stunnel without Kerberos configuration files inside the chroot.

CVSS2: 4.3
11%
Средний
больше 15 лет назад
nvd логотип
CVE-2010-0433

The kssl_keytab_is_available function in ssl/kssl.c in OpenSSL before 0.9.8n, when Kerberos is enabled but Kerberos configuration files cannot be opened, does not check a certain return value, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via SSL cipher negotiation, as demonstrated by a chroot installation of Dovecot or stunnel without Kerberos configuration files inside the chroot.

CVSS2: 4.3
11%
Средний
больше 15 лет назад
debian логотип
CVE-2010-0433

The kssl_keytab_is_available function in ssl/kssl.c in OpenSSL before ...

CVSS2: 4.3
11%
Средний
больше 15 лет назад
github логотип
GHSA-5gv7-x3p9-2mf6

The kssl_keytab_is_available function in ssl/kssl.c in OpenSSL before 0.9.8n, when Kerberos is enabled but Kerberos configuration files cannot be opened, does not check a certain return value, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via SSL cipher negotiation, as demonstrated by a chroot installation of Dovecot or stunnel without Kerberos configuration files inside the chroot.

11%
Средний
больше 3 лет назад
oracle-oval логотип
ELSA-2010-0162

ELSA-2010-0162: openssl security update (IMPORTANT)

больше 15 лет назад
fstec логотип
BDU:2015-09418

Уязвимости операционной системы Gentoo Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

CVSS3: 7.3
почти 14 лет назад

Уязвимостей на страницу