CVE-2005-3731: Critical severity yaSSL yaSSL vulnerability
Published Nov 21, 2005
·Updated
Unspecified vulnerability in yaSSL before 1.0.6 has unknown impact and attack vectors, related to "certificate chain processing."
Affected Software
19 affected components
yaSSL yaSSL=0.4.0
yaSSL yaSSL=0.9.0
yaSSL yaSSL=1.0.5
yaSSL yaSSL=0.9.6
yaSSL yaSSL=1.0
yaSSL yaSSL=0.9.9
yaSSL yaSSL=0.8.0
yaSSL yaSSL=0.5.0
yaSSL yaSSL=0.6.0
yaSSL yaSSL=0.7.0
yaSSL yaSSL=1.0.3
yaSSL yaSSL=0.9.5
yaSSL yaSSL=0.9.8
yaSSL yaSSL=0.9.2
yaSSL yaSSL=1.0.4
yaSSL yaSSL=0.3.5
yaSSL yaSSL=0.3.0
yaSSL yaSSL=1.0.2
yaSSL yaSSL=1.0.1
Remediation
Patch Available
Event History
Nov 21, 2005
CVE Published
11:03 AM
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-3731?
The severity of CVE-2005-3731 is currently unspecified and may vary based on the environment and usage of the affected yaSSL versions.
2
How do I fix CVE-2005-3731?
To fix CVE-2005-3731, upgrade yaSSL to version 1.0.6 or later, which addresses this vulnerability.
3
Which versions of yaSSL are affected by CVE-2005-3731?
CVE-2005-3731 affects yaSSL versions from 0.3.0 to 1.0.5.
4
What types of attack vectors are associated with CVE-2005-3731?
The specific attack vectors for CVE-2005-3731 are unknown, but they are related to certificate chain processing.
5
Is CVE-2005-3731 being actively exploited?
As of the latest information, it is unclear whether CVE-2005-3731 is being actively exploited in the wild.