Back to search
CVE-2010-0740
Published: Mar 26, 2010
Modified: Aug 7, 2024
PUBLISHED
Description
The ssl3_get_record function in ssl/s3_pkt.c in OpenSSL 0.9.8f through 0.9.8m allows remote attackers to cause a denial of service (crash) via a malformed record in a TLS connection that triggers a NULL pointer dereference, related to the minor version number. NOTE: some of these details are obtained from third party information.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
42724
third-party-advisory
x_refsource_SECUNIA
http://support.apple.com/kb/HT4723
x_refsource_CONFIRM
HPSBUX02531
vendor-advisory
x_refsource_HP
APPLE-SA-2011-06-23-1
vendor-advisory
x_refsource_APPLE
http://www.openssl.org/news/secadv_20100324.txt
x_refsource_CONFIRM
[syslog-ng-announce] 20110110 syslog-ng Premium Edition 3.0.6a has been released
mailing-list
x_refsource_MLIST
ADV-2010-0710
vdb-entry
x_refsource_VUPEN
http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html
x_refsource_CONFIRM
ADV-2010-0839
vdb-entry
x_refsource_VUPEN
SSRT100108
vendor-advisory
x_refsource_HP
MDVSA-2010:076
vendor-advisory
x_refsource_MANDRIVA
HPSBUX02517
vendor-advisory
x_refsource_HP
[syslog-ng-announce] 20110110 syslog-ng Premium Edition 3.2.1a has been released
mailing-list
x_refsource_MLIST
1023748
vdb-entry
x_refsource_SECTRACK
39932
third-party-advisory
x_refsource_SECUNIA
ADV-2010-0933
vdb-entry
x_refsource_VUPEN
http://www.vmware.com/security/advisories/VMSA-2011-0003.html
x_refsource_CONFIRM
SSRT100058
vendor-advisory
x_refsource_HP
https://kb.bluecoat.com/index?page=content&id=SA50
x_refsource_CONFIRM
oval:org.mitre.oval:def:11731
vdb-entry
signature
x_refsource_OVAL
20110211 VMSA-2011-0003 Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX
mailing-list
x_refsource_BUGTRAQ
43311
third-party-advisory
x_refsource_SECUNIA
ADV-2010-1216
vdb-entry
x_refsource_VUPEN
42733
third-party-advisory
x_refsource_SECUNIA
FEDORA-2010-5744
vendor-advisory
x_refsource_FEDORA
http://aix.software.ibm.com/aix/efixes/security/openssl_advisory.asc
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now