First published: Thu Jan 15 2004(Updated: )
webadmin.exe in Novell Nsure Audit 1.0.1 allows remote attackers to cause a denial of service via malformed ASN.1 packets in corrupt client certificates to an SSL server, as demonstrated using an exploit for the OpenSSL ASN.1 parsing vulnerability.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Novell Nsure Audit | =1.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-1247 is considered a high-severity vulnerability due to its potential for causing denial of service.
To fix CVE-2005-1247, apply the latest patches from Novell for Nsure Audit 1.0.1.
CVE-2005-1247 facilitates a denial of service attack against SSL servers using malformed ASN.1 packets.
CVE-2005-1247 affects Novell Nsure Audit version 1.0.1.
Yes, CVE-2005-1247 can be exploited remotely by attackers sending malformed client certificates to the SSL server.