Oval Definition:oval:org.mitre.oval:def:18985
Revision Date:2015-05-04Version:7
Title:OpenSSL vulnerability 0.9.8h through 0.9.8q and 1.0.0 through 1.0.0c in VisualSVN Server (CVE-2011-0014)
Description:ssl/t1_lib.c in OpenSSL 0.9.8h through 0.9.8q and 1.0.0 through 1.0.0c allows remote attackers to cause a denial of service (crash), and possibly obtain sensitive information in applications that use OpenSSL, via a malformed ClientHello handshake message that triggers an out-of-bounds memory access, aka "OCSP stapling vulnerability."
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2011-0014
Platform(s):Microsoft Windows 7
Microsoft Windows 8
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Server 2012
Microsoft Windows Vista
Microsoft Windows XP
Product(s):VisualSVN Server
Definition Synopsis
  • VisualSVN Server is installed
  • AND If the version of OpenSSL 0.9.8h through 0.9.8q and 1.0.0 through 1.0.0c in VisualSVN Server
  • Check the version of OpenSSL in VisualSVN Server
  • Check if OpenSSL version is greater than or equals to 0.9.8.8 in VisualSVN Server
  • AND Check if OpenSSL version is less than or equals to 0.9.8.17 in VisualSVN Server
  • OR Check the version of OpenSSL in VisualSVN Server
  • Check if OpenSSL version is greater than or equals to 1.0.0.0 in VisualSVN Server
  • AND Check if OpenSSL is less than or equals to 1.0.0.3 in VisualSVN Server
  • BACK