CVE Database
/

CVE-2014-0224

Back to search

CVE-2014-0224

Published: Jun 5, 2014

Modified: Aug 6, 2024

PUBLISHED

Description

OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h does not properly restrict processing of ChangeCipherSpec messages, which allows man-in-the-middle attackers to trigger use of a zero-length master key in certain OpenSSL-to-OpenSSL communications, and consequently hijack sessions or obtain sensitive information, via a crafted TLS handshake, aka the "CCS Injection" vulnerability.

VendorProductVersions

n/a

n/a

affected
n/a

References

59342
third-party-advisory
x_refsource_SECUNIA
59669
third-party-advisory
x_refsource_SECUNIA
59525
third-party-advisory
x_refsource_SECUNIA
HPSBMU03071
vendor-advisory
x_refsource_HP
59004
third-party-advisory
x_refsource_SECUNIA
59530
third-party-advisory
x_refsource_SECUNIA
59824
third-party-advisory
x_refsource_SECUNIA
59282
third-party-advisory
x_refsource_SECUNIA
59215
third-party-advisory
x_refsource_SECUNIA
59990
third-party-advisory
x_refsource_SECUNIA
59264
third-party-advisory
x_refsource_SECUNIA
59454
third-party-advisory
x_refsource_SECUNIA
58492
third-party-advisory
x_refsource_SECUNIA
59186
third-party-advisory
x_refsource_SECUNIA
59188
third-party-advisory
x_refsource_SECUNIA
59126
third-party-advisory
x_refsource_SECUNIA
HPSBMU03078
vendor-advisory
x_refsource_HP
HPSBMU03089
vendor-advisory
x_refsource_HP
59306
third-party-advisory
x_refsource_SECUNIA
RHSA-2014:0627
vendor-advisory
x_refsource_REDHAT
HPSBGN03068
vendor-advisory
x_refsource_HP
RHSA-2014:0626
vendor-advisory
x_refsource_REDHAT
59190
third-party-advisory
x_refsource_SECUNIA
58639
third-party-advisory
x_refsource_SECUNIA
59446
third-party-advisory
x_refsource_SECUNIA
59529
third-party-advisory
x_refsource_SECUNIA
59445
third-party-advisory
x_refsource_SECUNIA
59589
third-party-advisory
x_refsource_SECUNIA
59894
third-party-advisory
x_refsource_SECUNIA
59325
third-party-advisory
x_refsource_SECUNIA
59354
third-party-advisory
x_refsource_SECUNIA
HPSBUX03046
vendor-advisory
x_refsource_HP
61254
third-party-advisory
x_refsource_SECUNIA
59447
third-party-advisory
x_refsource_SECUNIA
1031594
vdb-entry
x_refsource_SECTRACK
59223
third-party-advisory
x_refsource_SECUNIA
58743
third-party-advisory
x_refsource_SECUNIA
58719
third-party-advisory
x_refsource_SECUNIA
59449
third-party-advisory
x_refsource_SECUNIA
59132
third-party-advisory
x_refsource_SECUNIA
SSRT101818
vendor-advisory
x_refsource_HP
HPSBST03098
vendor-advisory
x_refsource_HP
HPSBMU03058
vendor-advisory
x_refsource_HP
59442
third-party-advisory
x_refsource_SECUNIA
HPSBOV03047
vendor-advisory
x_refsource_HP
HPSBST03195
vendor-advisory
x_refsource_HP
59441
third-party-advisory
x_refsource_SECUNIA
HPSBMU03074
vendor-advisory
x_refsource_HP
HPSBMU03094
vendor-advisory
x_refsource_HP
60567
third-party-advisory
x_refsource_SECUNIA
59189
third-party-advisory
x_refsource_SECUNIA
59368
third-party-advisory
x_refsource_SECUNIA
MDVSA-2014:106
vendor-advisory
x_refsource_MANDRIVA
59142
third-party-advisory
x_refsource_SECUNIA
58742
third-party-advisory
x_refsource_SECUNIA
RHSA-2014:0624
vendor-advisory
x_refsource_REDHAT
59602
third-party-advisory
x_refsource_SECUNIA
59300
third-party-advisory
x_refsource_SECUNIA
58930
third-party-advisory
x_refsource_SECUNIA
61815
third-party-advisory
x_refsource_SECUNIA
58667
third-party-advisory
x_refsource_SECUNIA
GLSA-201407-05
vendor-advisory
x_refsource_GENTOO
59191
third-party-advisory
x_refsource_SECUNIA
59284
third-party-advisory
x_refsource_SECUNIA
59444
third-party-advisory
x_refsource_SECUNIA
59365
third-party-advisory
x_refsource_SECUNIA
59305
third-party-advisory
x_refsource_SECUNIA
59483
third-party-advisory
x_refsource_SECUNIA
58385
third-party-advisory
x_refsource_SECUNIA
59495
third-party-advisory
x_refsource_SECUNIA
FEDORA-2014-9308
vendor-advisory
x_refsource_FEDORA
58945
third-party-advisory
x_refsource_SECUNIA
HPSBST03106
vendor-advisory
x_refsource_HP
59659
third-party-advisory
x_refsource_SECUNIA
59440
third-party-advisory
x_refsource_SECUNIA
openSUSE-SU-2016:0640
vendor-advisory
x_refsource_SUSE
59429
third-party-advisory
x_refsource_SECUNIA
59655
third-party-advisory
x_refsource_SECUNIA
59370
third-party-advisory
x_refsource_SECUNIA
59827
third-party-advisory
x_refsource_SECUNIA
58660
third-party-advisory
x_refsource_SECUNIA
59163
third-party-advisory
x_refsource_SECUNIA
58716
third-party-advisory
x_refsource_SECUNIA
59055
third-party-advisory
x_refsource_SECUNIA
59437
third-party-advisory
x_refsource_SECUNIA
60176
third-party-advisory
x_refsource_SECUNIA
HPSBPI03107
vendor-advisory
x_refsource_HP
59101
third-party-advisory
x_refsource_SECUNIA
59374
third-party-advisory
x_refsource_SECUNIA
59063
third-party-advisory
x_refsource_SECUNIA
59310
third-party-advisory
x_refsource_SECUNIA
HPSBMU03216
vendor-advisory
x_refsource_HP
IV61506
vendor-advisory
x_refsource_AIXAPAR
59502
third-party-advisory
x_refsource_SECUNIA
59878
third-party-advisory
x_refsource_SECUNIA
SUSE-SU-2015:0743
vendor-advisory
x_refsource_SUSE
HPSBMU03101
vendor-advisory
x_refsource_HP
59214
third-party-advisory
x_refsource_SECUNIA
HPSBHF03088
vendor-advisory
x_refsource_HP
HPSBMU03057
vendor-advisory
x_refsource_HP
59167
third-party-advisory
x_refsource_SECUNIA
59120
third-party-advisory
x_refsource_SECUNIA
HPSBMU03053
vendor-advisory
x_refsource_HP
59380
third-party-advisory
x_refsource_SECUNIA
MDVSA-2014:105
vendor-advisory
x_refsource_MANDRIVA
59460
third-party-advisory
x_refsource_SECUNIA
59506
third-party-advisory
x_refsource_SECUNIA
58939
third-party-advisory
x_refsource_SECUNIA
SSRT101590
vendor-advisory
x_refsource_HP
59661
third-party-advisory
x_refsource_SECUNIA
59514
third-party-advisory
x_refsource_SECUNIA
59677
third-party-advisory
x_refsource_SECUNIA
RHSA-2014:0630
vendor-advisory
x_refsource_REDHAT
RHSA-2014:0632
vendor-advisory
x_refsource_REDHAT
58745
third-party-advisory
x_refsource_SECUNIA
59438
third-party-advisory
x_refsource_SECUNIA
58714
third-party-advisory
x_refsource_SECUNIA
HPSBGN03050
vendor-advisory
x_refsource_HP
openSUSE-SU-2015:0229
vendor-advisory
x_refsource_SUSE
59435
third-party-advisory
x_refsource_SECUNIA
HPSBHF03052
vendor-advisory
x_refsource_HP
58615
third-party-advisory
x_refsource_SECUNIA
HPSBST03265
vendor-advisory
x_refsource_HP
59231
third-party-advisory
x_refsource_SECUNIA
SUSE-SU-2015:0578
vendor-advisory
x_refsource_SUSE
59211
third-party-advisory
x_refsource_SECUNIA
58433
third-party-advisory
x_refsource_SECUNIA
60066
third-party-advisory
x_refsource_SECUNIA
59301
third-party-advisory
x_refsource_SECUNIA
60522
third-party-advisory
x_refsource_SECUNIA
59784
third-party-advisory
x_refsource_SECUNIA
HPSBST03097
vendor-advisory
x_refsource_HP
20140607 Re: More OpenSSL issues
mailing-list
x_refsource_FULLDISC
HPSBMU03076
vendor-advisory
x_refsource_HP
59135
third-party-advisory
x_refsource_SECUNIA
58759
third-party-advisory
x_refsource_SECUNIA
59093
third-party-advisory
x_refsource_SECUNIA
59192
third-party-advisory
x_refsource_SECUNIA
FEDORA-2014-9301
vendor-advisory
x_refsource_FEDORA
HPSBMU03062
vendor-advisory
x_refsource_HP
58579
third-party-advisory
x_refsource_SECUNIA
59040
third-party-advisory
x_refsource_SECUNIA
HPSBMU03056
vendor-advisory
x_refsource_HP
59175
third-party-advisory
x_refsource_SECUNIA
60819
third-party-advisory
x_refsource_SECUNIA
HPSBMU03051
vendor-advisory
x_refsource_HP
59666
third-party-advisory
x_refsource_SECUNIA
58128
third-party-advisory
x_refsource_SECUNIA
HPSBMU03055
vendor-advisory
x_refsource_HP
59413
third-party-advisory
x_refsource_SECUNIA
59721
third-party-advisory
x_refsource_SECUNIA
HPSBHF03145
vendor-advisory
x_refsource_HP
RHSA-2014:0680
vendor-advisory
x_refsource_REDHAT
59012
third-party-advisory
x_refsource_SECUNIA
58713
third-party-advisory
x_refsource_SECUNIA
59362
third-party-advisory
x_refsource_SECUNIA
MDVSA-2015:062
vendor-advisory
x_refsource_MANDRIVA
HPSBMU03070
vendor-advisory
x_refsource_HP
RHSA-2014:0631
vendor-advisory
x_refsource_REDHAT
59338
third-party-advisory
x_refsource_SECUNIA
59450
third-party-advisory
x_refsource_SECUNIA
VU#978508
third-party-advisory
x_refsource_CERT-VN
1031032
vdb-entry
x_refsource_SECTRACK
59287
third-party-advisory
x_refsource_SECUNIA
59491
third-party-advisory
x_refsource_SECUNIA
59364
third-party-advisory
x_refsource_SECUNIA
59451
third-party-advisory
x_refsource_SECUNIA
58977
third-party-advisory
x_refsource_SECUNIA
60571
third-party-advisory
x_refsource_SECUNIA
59459
third-party-advisory
x_refsource_SECUNIA
60577
third-party-advisory
x_refsource_SECUNIA
59448
third-party-advisory
x_refsource_SECUNIA
HPSBST03103
vendor-advisory
x_refsource_HP
59885
third-party-advisory
x_refsource_SECUNIA
59202
third-party-advisory
x_refsource_SECUNIA
RHSA-2014:0633
vendor-advisory
x_refsource_REDHAT
59375
third-party-advisory
x_refsource_SECUNIA
HPSBMU03083
vendor-advisory
x_refsource_HP
59528
third-party-advisory
x_refsource_SECUNIA
58337
third-party-advisory
x_refsource_SECUNIA
59518
third-party-advisory
x_refsource_SECUNIA
59389
third-party-advisory
x_refsource_SECUNIA
59162
third-party-advisory
x_refsource_SECUNIA
59383
third-party-advisory
x_refsource_SECUNIA
59490
third-party-advisory
x_refsource_SECUNIA
59916
third-party-advisory
x_refsource_SECUNIA
HPSBMU03065
vendor-advisory
x_refsource_HP
IT02314
vendor-advisory
x_refsource_AIXAPAR
59043
third-party-advisory
x_refsource_SECUNIA
59347
third-party-advisory
x_refsource_SECUNIA
60049
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now