Oval Definition:oval:org.mitre.oval:tst:30479
Comment:openssl096b is earlier than 0:0.9.6b-16
Type:rpminfo_testNamespace:linux
Check_Existence:at_least_one_existsCheck:at least one
State Operator:AND
References
Object:oval:org.mitre.oval:obj:14258
State:oval:org.mitre.oval:ste:9284
Referencing Definitions
Definition IDClassTitleLast Modified
oval:org.mitre.oval:def:9580
V
The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of Kerberos tickets during a handshake, which allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that causes an out-of-bounds read.
2013-04-29
oval:org.mitre.oval:def:11755
V
OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a denial of service (infinite loop), as demonstrated using the Codenomicon TLS Test Tool.
2013-04-29
BACK