|
|
Info |
Last Modified |
| 10 months ago |
|
|
|
|
Keywords |
HPSBMA02250,SSRT061275 HPSBMA02250,SSRT061275
|
|
Description |
OpenSSL contains a flaw that may allow a remote denial of service. The issue is triggered due to an error in processing malformed ASN.1 structures which may lead to infinite loop and consumption of memory, and will result in loss of availability for the service.
|
|
Classification |
Location:
Remote/Network Access Required
Attack Type:
Denial of Service
Impact:
Loss of Availability
Exploit:
Exploit Unavailable
Disclosure:
OSVDB Verified
|
|
Solution |
Upgrade to version 0.9.7l, 0.9.8d or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.
|
|
Products |
|
OpenSSL
 |
0.9.7 |
0.9.8 |
|
SnapGear
 |
3.1.4u1 |
|
|
|
|
|
|
Credit |
- Dr. S. N. Henson - The OpenSSL Project
- Open Network Security - Open Network Security
|
|
BlogsProvided by Technorati
|
None found at this time
|
|
|