CWE
NVD-CWE-Other
Advisory Published
Updated

CVE-2004-0081

First published: Thu Mar 18 2004(Updated: )

OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a denial of service (infinite loop), as demonstrated using the Codenomicon TLS Test Tool.

Credit: cve@mitre.org

Affected SoftwareAffected VersionHow to fix
Cisco Firewall Services Module Software
Symantec Clientless VPN Gateway 4400=5.0
HP Apache-based Web Server=2.0.43.00
Cisco Firewall Services Module Software=1.1.3
Cisco Firewall Services Module Software=1.1.2
HP AAA Server
Cisco Firewall Services Module Software=1.1_\(3.005\)
HP Apache-based Web Server=2.0.43.04
Cisco Firewall Services Module Software=2.1_\(0.208\)
Avaya SG203=4.4
HPE HP-UX=11.11
Red Hat Enterprise Linux Desktop=3.0
HPE HP-UX=11.23
CiscoWorks Common Management Foundation=2.1
FreeBSD Kernel=5.1-releng
Avaya SG208=4.4
Red Hat Enterprise Linux=3.0
Avaya SG200=4.4
Avaya SG5=4.4
Red Hat Linux=7.2
Cisco CiscoWorks Common Services=2.2
OpenBSD=3.3
Apple macOS Server=10.3.3
FreeBSD Kernel=5.1-release
Red Hat Linux=8.0
Red Hat Linux=7.3
Avaya Converged Communications Server=2.0
Xinuos OpenServer=5.0.7
HPE HP-UX=11.00
Avaya SG5=4.2
Avaya SG208
FreeBSD Kernel=5.1
FreeBSD Kernel=5.2
Avaya SG200=4.31.29
FreeBSD Kernel=4.8
Red Hat Enterprise Linux=3.0
Avaya SG203=4.31.29
HPE HP-UX=8.05
Apple iOS and macOS=10.3.3
FreeBSD Kernel=5.2.1-release
FreeBSD Kernel=4.8-releng
Xinuos OpenServer=5.0.6
Avaya SG5=4.3
FreeBSD Kernel=4.9
OpenBSD=3.4
Red Hat Enterprise Linux=3.0
Cisco IOS=12.1\(11\)e
Cisco IOS=12.1\(11b\)e
Cisco IOS=12.1\(11b\)e12
Cisco IOS=12.1\(11b\)e14
Cisco IOS=12.1\(13\)e9
Cisco IOS=12.1\(19\)e1
Cisco IOS=12.2\(14\)sy
Cisco IOS=12.2\(14\)sy1
Cisco IOS=12.2sy
Cisco IOS=12.2za
4D=4.0
4D=5.2
4D=5.2.1
4D=5.2.2
4D=5.2.3
4D=5.2.4
4D=5.3
4D=5.3.1
Avaya Intuity Audix
Avaya Intuity Audix=5.1.46
Avaya Intuity Audix=s3210
Avaya Intuity Audix=s3400
Avaya VSU=5
Avaya VSU=5x
Avaya VSU=100_r2.0.1
Avaya VSU=500
Avaya VSU=2000_r2.0.1
Avaya VSU=5000_r2.0.1
Avaya VSU=7500_r2.0.1
Avaya VSU=10000_r2.0.1
Check Point FireWall-1
Check Point FireWall-1=2.0
Check Point FireWall-1=next_generation_fp0
Check Point FireWall-1=next_generation_fp1
Check Point FireWall-1=next_generation_fp2
Checkpoint Multi-domain Management / Provider-1=4.1
Checkpoint Multi-domain Management / Provider-1=4.1-sp1
Checkpoint Multi-domain Management / Provider-1=4.1-sp2
Checkpoint Multi-domain Management / Provider-1=4.1-sp3
Checkpoint Multi-domain Management / Provider-1=4.1-sp4
Check Point VPN-1=next_generation
Check Point VPN-1=next_generation_fp0
Check Point VPN-1=next_generation_fp1
Check Point VPN-1=vsx_ng_with_application_intelligence
Cisco Prime Access Registrar
Cisco Application and Content Networking Software
Cisco Secure Content Accelerator=1.0
Cisco Secure Content Accelerator=2.0
Cisco Content Services Switch 11000
Cisco Okena StormWatch=3.2
Cisco PIX=6.2.2_.111
Cisco Threat Response
Cisco WebNS=6.10
Cisco WebNS=6.10_b4
Cisco WebNS=7.1_0.1.02
Cisco WebNS=7.1_0.2.06
Cisco WebNS=7.2_0.0.03
Cisco WebNS=7.10
Cisco WebNS=7.10_.0.06s
EMC RSA BSAFE SSL-J=3.0
EMC RSA BSAFE SSL-J=3.0.1
EMC RSA BSAFE SSL-J=3.1
HP WBEM=a.01.05.08
HP WBEM=a.02.00.00
HP WBEM=a.02.00.01
OpenLiteSpeed=1.0.1
OpenLiteSpeed=1.0.2
OpenLiteSpeed=1.0.3
OpenLiteSpeed=1.1
OpenLiteSpeed=1.1.1
OpenLiteSpeed=1.2.1
OpenLiteSpeed=1.2.2
OpenLiteSpeed=1.2_rc1
OpenLiteSpeed=1.2_rc2
OpenLiteSpeed=1.3
OpenLiteSpeed=1.3.1
OpenLiteSpeed=1.3_rc1
OpenLiteSpeed=1.3_rc2
OpenLiteSpeed=1.3_rc3
Neoteris Instant Virtual Extranet=3.0
Neoteris Instant Virtual Extranet=3.1
Neoteris Instant Virtual Extranet=3.2
Neoteris Instant Virtual Extranet=3.3
Neoteris Instant Virtual Extranet=3.3.1
Novell eDirectory=8.0
Novell eDirectory=8.5
Novell eDirectory=8.5.12a
Novell eDirectory=8.5.27
Novell eDirectory=8.6.2
Novell eDirectory=8.7
Novell eDirectory=8.7.1
Novell eDirectory=8.7.1-sp1
NetIQ iManager=1.5
NetIQ iManager=2.0
OpenSSL=0.9.6c
OpenSSL=0.9.6d
OpenSSL=0.9.6e
OpenSSL=0.9.6f
OpenSSL=0.9.6g
OpenSSL=0.9.6h
OpenSSL=0.9.6i
OpenSSL=0.9.6j
OpenSSL=0.9.6k
OpenSSL=0.9.7
OpenSSL=0.9.7-beta1
OpenSSL=0.9.7-beta2
OpenSSL=0.9.7-beta3
OpenSSL=0.9.7a
OpenSSL=0.9.7b
OpenSSL=0.9.7c
SUSE libopenssl1 0 0-32bit=0.9.6-15
SUSE libopenssl1 0 0-32bit=0.9.6b-3
SUSE libopenssl1 0 0-32bit=0.9.7a-2
SUSE libopenssl1 0 0-32bit=0.9.7a-2
SUSE libopenssl1 0 0-32bit=0.9.7a-2
SGI ProPack=2.3
SGI ProPack=2.4
SGI ProPack=3.0
Stonesoft ServerCluster=2.5
Stonesoft ServerCluster=2.5.2
Stonesoft Stonebeat=1_2.0
Stonesoft Stonebeat=1_3.0
Stonesoft Stonebeat=2.0
Stonesoft Stonebeat=2.5
Stonesoft Stonebeat=3.0
Stonesoft Stonebeat=2.0
Stonesoft Stonebeat=2.5
Stonesoft StoneBeat WebCluster=2.0
Stonesoft StoneBeat WebCluster=2.5
Stonesoft StoneGate Firewall=1.5.17
Stonesoft StoneGate Firewall=1.5.18
Stonesoft StoneGate Firewall=1.6.2
Stonesoft StoneGate Firewall=1.6.3
Stonesoft StoneGate Firewall=1.7
Stonesoft StoneGate Firewall=1.7.1
Stonesoft StoneGate Firewall=1.7.2
Stonesoft StoneGate Firewall=2.0.1
Stonesoft StoneGate Firewall=2.0.4
Stonesoft StoneGate Firewall=2.0.5
Stonesoft StoneGate Firewall=2.0.6
Stonesoft StoneGate Firewall=2.0.7
Stonesoft StoneGate Firewall=2.0.8
Stonesoft StoneGate Firewall=2.0.9
Stonesoft StoneGate Firewall=2.1
Stonesoft StoneGate Firewall=2.2
Stonesoft StoneGate Firewall=2.2.1
Stonesoft StoneGate Firewall=2.2.4
Forcepoint Stonesoft StoneGate=1.7
Forcepoint Stonesoft StoneGate=1.7.2
Forcepoint Stonesoft StoneGate=2.0
Forcepoint Stonesoft StoneGate=2.0.7
Forcepoint Stonesoft StoneGate=2.0.8
Forcepoint Stonesoft StoneGate=2.0.9
Oracle Tarantella Enterprise=3.20
Oracle Tarantella Enterprise=3.30
Oracle Tarantella Enterprise=3.40
VMware GSX Server=2.0
VMware GSX Server=2.0.1_build_2129
VMware GSX Server=2.5.1
VMware GSX Server=2.5.1_build_5336
VMware GSX Server=3.0_build_7592
Avaya S8300=r2.0.0
Avaya S8300=r2.0.1
Avaya S8500=r2.0.0
Avaya S8500=r2.0.1
Avaya S8700=r2.0.0
Avaya S8700=r2.0.1
Blue Coat ProxySG
Cisco CallManager Express
Cisco Content Services Switch 11500
Cisco GSS 4480 Global Site Selector
Cisco GSS 4490 Global Site Selector
Cisco MDS 9000 Series Multilayer Switches
Cisco CSS Secure Content Accelerator=10000
Secure Computing Sidewinder=5.2
Secure Computing Sidewinder=5.2.0.01
Secure Computing Sidewinder=5.2.0.02
Secure Computing Sidewinder=5.2.0.03
Secure Computing Sidewinder=5.2.0.04
Secure Computing Sidewinder=5.2.1
Secure Computing Sidewinder=5.2.1.02
Sun Crypto Accelerator 4000=1.0
Blue Coat CacheOS CA SA=4.1.10
Blue Coat CacheOS CA SA=4.1.12
Cisco PIX Firewall=6.0
Cisco PIX Firewall=6.0\(1\)
Cisco PIX Firewall=6.0\(2\)
Cisco PIX Firewall=6.0\(3\)
Cisco PIX Firewall=6.0\(4\)
Cisco PIX Firewall=6.0\(4.101\)
Cisco PIX Firewall=6.1
Cisco PIX Firewall=6.1\(1\)
Cisco PIX Firewall=6.1\(2\)
Cisco PIX Firewall=6.1\(3\)
Cisco PIX Firewall=6.1\(4\)
Cisco PIX Firewall=6.1\(5\)
Cisco PIX Firewall=6.2
Cisco PIX Firewall=6.2\(1\)
Cisco PIX Firewall=6.2\(2\)
Cisco PIX Firewall=6.2\(3\)
Cisco PIX Firewall=6.2\(3.100\)
Cisco PIX Firewall=6.3
Cisco PIX Firewall=6.3\(1\)
Cisco PIX Firewall=6.3\(2\)
Cisco PIX Firewall=6.3\(3.102\)
Cisco PIX Firewall=6.3\(3.109\)

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2004-0081?

    CVE-2004-0081 has a severity rating that indicates it can lead to a denial of service due to an infinite loop.

  • How do I fix CVE-2004-0081?

    To fix CVE-2004-0081, upgrade OpenSSL to version 0.9.6d or later.

  • What systems are affected by CVE-2004-0081?

    CVE-2004-0081 affects multiple systems including various versions of OpenSSL and related software such as Cisco, Avaya, and Symantec products.

  • Can CVE-2004-0081 be exploited remotely?

    Yes, CVE-2004-0081 can be exploited remotely by sending specially crafted packets to services using vulnerable versions of OpenSSL.

  • What impact does CVE-2004-0081 have on affected systems?

    The impact of CVE-2004-0081 on affected systems is primarily denial of service, causing them to enter an infinite loop and become unresponsive.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203