Oval Definition:oval:org.mitre.oval:tst:30638
Comment:openssl-perl is earlier than 0:0.9.7a-33.4
Type:rpminfo_testNamespace:linux
Check_Existence:at_least_one_existsCheck:at least one
State Operator:AND
References
Object:oval:org.mitre.oval:obj:14122
State:oval:org.mitre.oval:ste:8759
Referencing Definitions
Definition IDClassTitleLast Modified
oval:org.mitre.oval:def:9580
V
The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of Kerberos tickets during a handshake, which allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that causes an out-of-bounds read.
2013-04-29
oval:org.mitre.oval:def:9779
V
The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.
2013-04-29
oval:org.mitre.oval:def:11755
V
OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a denial of service (infinite loop), as demonstrated using the Codenomicon TLS Test Tool.
2013-04-29
BACK