Description
The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Thu, 16 Jan 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Subscriptions
4d
Subscribe
Webstar
Subscribe
Apple
Subscribe
Mac Os X
Subscribe
Mac Os X Server
Subscribe
Avaya
Subscribe
Converged Communications Server
Subscribe
Intuity Audix
Subscribe
S8300
Subscribe
S8500
Subscribe
S8700
Subscribe
Sg200
Subscribe
Sg203
Subscribe
Sg208
Subscribe
Sg5
Subscribe
Vsu
Subscribe
Bluecoat
Subscribe
Cacheos Ca Sa
Subscribe
Proxysg
Subscribe
Checkpoint
Subscribe
Firewall-1
Subscribe
Provider-1
Subscribe
Vpn-1
Subscribe
Cisco
Subscribe
Access Registrar
Subscribe
Application And Content Networking Software
Subscribe
Call Manager
Subscribe
Ciscoworks Common Management Foundation
Subscribe
Ciscoworks Common Services
Subscribe
Content Services Switch 11500
Subscribe
Css11000 Content Services Switch
Subscribe
Css Secure Content Accelerator
Subscribe
Firewall Services Module
Subscribe
Gss 4480 Global Site Selector
Subscribe
Gss 4490 Global Site Selector
Subscribe
Ios
Subscribe
Mds 9000
Subscribe
Okena Stormwatch
Subscribe
Pix Firewall
Subscribe
Pix Firewall Software
Subscribe
Secure Content Accelerator
Subscribe
Threat Response
Subscribe
Webns
Subscribe
Dell
Subscribe
Bsafe Ssl-j
Subscribe
Freebsd
Subscribe
Freebsd
Subscribe
Hp
Subscribe
Aaa Server
Subscribe
Apache-based Web Server
Subscribe
Hp-ux
Subscribe
Wbem
Subscribe
Lite
Subscribe
Speed Technologies Litespeed Web Server
Subscribe
Neoteris
Subscribe
Instant Virtual Extranet
Subscribe
Novell
Subscribe
Edirectory
Subscribe
Imanager
Subscribe
Openbsd
Subscribe
Openbsd
Subscribe
Openssl
Subscribe
Openssl
Subscribe
Redhat
Subscribe
Enterprise Linux
Subscribe
Enterprise Linux Desktop
Subscribe
Linux
Subscribe
Openssl
Subscribe
Stronghold
Subscribe
Sco
Subscribe
Openserver
Subscribe
Securecomputing
Subscribe
Sidewinder
Subscribe
Sgi
Subscribe
Propack
Subscribe
Stonesoft
Subscribe
Servercluster
Subscribe
Stonebeat Fullcluster
Subscribe
Stonebeat Securitycluster
Subscribe
Stonebeat Webcluster
Subscribe
Stonegate
Subscribe
Stonegate Vpn Client
Subscribe
Sun
Subscribe
Crypto Accelerator 4000
Subscribe
Symantec
Subscribe
Clientless Vpn Gateway 4400
Subscribe
Tarantella
Subscribe
Tarantella Enterprise
Subscribe
Vmware
Subscribe
Gsx Server
Subscribe
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-01-16T17:33:22.869Z
Reserved: 2004-01-19T00:00:00.000Z
Link: CVE-2004-0079
Updated: 2024-08-08T00:01:23.689Z
Status : Deferred
Published: 2004-11-23T05:00:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2004-0079
OpenCVE Enrichment
No data.
Weaknesses