First published: Sat Apr 26 2003(Updated: )
stunnel 4.0.3 and earlier allows attackers to cause a denial of service (crash) via SIGCHLD signal handler race conditions that cause an inconsistency in the child counter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
stunnel | =4.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2002-1563 is classified as a denial of service vulnerability.
To fix CVE-2002-1563, upgrade to stunnel version 4.04 or later.
The impact of CVE-2002-1563 is that it can cause stunnel to crash, leading to service downtime.
Versions of stunnel 4.0.3 and earlier are affected by CVE-2002-1563.
CVE-2002-1563 allows attackers to exploit a race condition in the SIGCHLD signal handler.