Oval Definition:
oval:org.mitre.oval:def:2621
Revision Date
:
2004-11-17
Version
:
15
Title
:
OpenSSL Denial of Service Vulnerabilities
Description
:
The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.
Family
:
unix
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2004-0079
Platform(s)
:
Sun Solaris 8
Product(s)
:
Sun Crypto Accelerator 4000
Definition Synopsis
Software section
Solaris 8 or 9 installed
Solaris 8 Installed
OR
Solaris 9 Installed
AND
NOT
Patch 114796-04 or later installed
AND
Sun Crypto Accelerator 4000 software installed
AND
Configuration section
Apache running (httpd)
BACK