CVE-2008-1672
29.05.2008, 16:32
OpenSSL 0.9.8f and 0.9.8g allows remote attackers to cause a denial of service (crash) via a TLS handshake that omits the Server Key Exchange message and uses "particular cipher suites," which triggers a NULL pointer dereference.Enginsight
Vendor | Product | Version |
---|---|---|
openssl | openssl | 0.9.8f:f |
openssl | openssl | 0.9.8g:g |
canonical | ubuntu_linux | 8.04 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References