First published: Thu Aug 07 2014(Updated: )
It was found that OpenSSL DTLS clients using anonymous (EC)DH ciphersuites could be crashed by a malicious server via a handshake message.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/openssl | <1.0.1 | 1.0.1 |
redhat/openssl | <0.9.8 | 0.9.8 |
OpenSSL OpenSSL | =0.9.8 | |
OpenSSL OpenSSL | =0.9.8a | |
OpenSSL OpenSSL | =0.9.8b | |
OpenSSL OpenSSL | =0.9.8c | |
OpenSSL OpenSSL | =0.9.8d | |
OpenSSL OpenSSL | =0.9.8e | |
OpenSSL OpenSSL | =0.9.8f | |
OpenSSL OpenSSL | =0.9.8g | |
OpenSSL OpenSSL | =0.9.8h | |
OpenSSL OpenSSL | =0.9.8i | |
OpenSSL OpenSSL | =0.9.8j | |
OpenSSL OpenSSL | =0.9.8k | |
OpenSSL OpenSSL | =0.9.8l | |
OpenSSL OpenSSL | =0.9.8m | |
OpenSSL OpenSSL | =0.9.8m-beta1 | |
OpenSSL OpenSSL | =0.9.8n | |
OpenSSL OpenSSL | =0.9.8o | |
OpenSSL OpenSSL | =0.9.8p | |
OpenSSL OpenSSL | =0.9.8q | |
OpenSSL OpenSSL | =0.9.8r | |
OpenSSL OpenSSL | =0.9.8s | |
OpenSSL OpenSSL | =0.9.8t | |
OpenSSL OpenSSL | =0.9.8u | |
OpenSSL OpenSSL | =0.9.8v | |
OpenSSL OpenSSL | =0.9.8w | |
OpenSSL OpenSSL | =0.9.8x | |
OpenSSL OpenSSL | =0.9.8y | |
OpenSSL OpenSSL | =0.9.8za | |
OpenSSL OpenSSL | =1.0.0 | |
OpenSSL OpenSSL | =1.0.0-beta1 | |
OpenSSL OpenSSL | =1.0.0-beta2 | |
OpenSSL OpenSSL | =1.0.0-beta3 | |
OpenSSL OpenSSL | =1.0.0-beta4 | |
OpenSSL OpenSSL | =1.0.0-beta5 | |
OpenSSL OpenSSL | =1.0.0a | |
OpenSSL OpenSSL | =1.0.0b | |
OpenSSL OpenSSL | =1.0.0c | |
OpenSSL OpenSSL | =1.0.0d | |
OpenSSL OpenSSL | =1.0.0e | |
OpenSSL OpenSSL | =1.0.0f | |
OpenSSL OpenSSL | =1.0.0g | |
OpenSSL OpenSSL | =1.0.0h | |
OpenSSL OpenSSL | =1.0.0i | |
OpenSSL OpenSSL | =1.0.0j | |
OpenSSL OpenSSL | =1.0.0k | |
OpenSSL OpenSSL | =1.0.0l | |
OpenSSL OpenSSL | =1.0.0m | |
OpenSSL OpenSSL | =1.0.1 | |
OpenSSL OpenSSL | =1.0.1-beta1 | |
OpenSSL OpenSSL | =1.0.1-beta2 | |
OpenSSL OpenSSL | =1.0.1-beta3 | |
OpenSSL OpenSSL | =1.0.1a | |
OpenSSL OpenSSL | =1.0.1b | |
OpenSSL OpenSSL | =1.0.1c | |
OpenSSL OpenSSL | =1.0.1d | |
OpenSSL OpenSSL | =1.0.1e | |
OpenSSL OpenSSL | =1.0.1f | |
OpenSSL OpenSSL | =1.0.1g | |
OpenSSL OpenSSL | =1.0.1h |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.