Oval Definition:oval:org.mitre.oval:def:975
Revision Date:2007-04-25Version:20
Title:Red Hat OpenSSL do_change_cipher_spec Function Denial of Service
Description:The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.
Family:unixClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2004-0079
Platform(s):Red Hat Linux 9
Product(s):OpenSSL
Definition Synopsis
  • Red Hat 9 is installed
  • AND ix86 architecture
  • AND openssl version is less than 0.9.7a-20
  • AND openssl-devel version is less than 0.9.7a-20
  • AND openssl-perl version is less than 0.9.7a-20
  • AND openssl096 version is less than 0.9.6-25.9
  • AND openssl096b version is less than 0.9.6b-15
  • BACK