Oval Definition:oval:org.mitre.oval:def:870
Revision Date:2007-04-25Version:20
Title:Red Hat Enterprise 3 OpenSSL do_change_cipher_spec Function Denial of Service
Description:The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.
Family:unixClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2004-0079
Platform(s):Red Hat Enterprise Linux 3
Product(s):OpenSSL
Definition Synopsis
  • Red Hat Enterprise 3 is installed
  • AND ix86 architecture
  • AND openssl version is less than 0.9.7a-33.4
  • AND openssl-devel version is less than 0.9.7a-33.4
  • AND openssl-perl version is less than 0.9.7a-33.4
  • AND openssl096b version is less than 0.9.6b-16
  • BACK