CVE-2002-1563: Race Condition
Published Apr 26, 2003
·Updated
stunnel 4.0.3 and earlier allows attackers to cause a denial of service (crash) via SIGCHLD signal handler race conditions that cause an inconsistency in the child counter.
Affected Software
1 affected component
Stunnel Stunnel=4.04
Remediation
Patch Available
Event History
Apr 26, 2003
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-1563?
The severity of CVE-2002-1563 is classified as a denial of service vulnerability.
2
How do I fix CVE-2002-1563?
To fix CVE-2002-1563, upgrade to stunnel version 4.04 or later.
3
What is the impact of CVE-2002-1563?
The impact of CVE-2002-1563 is that it can cause stunnel to crash, leading to service downtime.
4
Which versions of stunnel are affected by CVE-2002-1563?
Versions of stunnel 4.0.3 and earlier are affected by CVE-2002-1563.
5
What type of attack does CVE-2002-1563 allow?
CVE-2002-1563 allows attackers to exploit a race condition in the SIGCHLD signal handler.