CVE-2008-7128
31.08.2009, 10:30
The ssl_parse_client_key_exchange function in XySSL before 0.9 does not protect against certain Bleichenbacher attacks using chosen ciphertext, which allows remote attackers to recover keys via unspecified vectors.Enginsight
| Vendor | Product | Version |
|---|---|---|
| xyssl | xyssl | 𝑥 ≤ 0.8 |
| xyssl | xyssl | 0.1 |
| xyssl | xyssl | 0.2 |
| xyssl | xyssl | 0.3 |
| xyssl | xyssl | 0.4 |
| xyssl | xyssl | 0.5 |
| xyssl | xyssl | 0.6 |
| xyssl | xyssl | 0.7 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration
References