VDB
BDU%3A2015-11042
BDU%3A2015-11042
PUBLISHED
CVSS 4.300000190734863 MEDIUM
Уязвимость библиотеки OpenSSL, позволяющая нарушителю проводить атаки, направленные на снижение стойкости алгоритма шифрования
Risk Scores
CVSS 2.0
4.300000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| OpenSSL Software Foundation, Oracle Corp. | OpenSSL, Enterprise Manager Ops Center |
Timeline
- Aug 25, 2015 CVE Published
- Apr 30, 2017 PoC Published
- Mar 23, 2021 CVE Updated
References
- https://www.oracle.com/security-alerts/cpujan2021.html url
- http://lists.apple.com/archives/security-announce/2015/Jun/msg00001.html url
- http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.html url
- http://openwall.com/lists/oss-security/2015/05/20/8 url
- http://support.apple.com/kb/HT204941 url
- http://support.apple.com/kb/HT204942 url
- http://www.mozilla.org/security/announce/2015/mfsa2015-70.html url
- http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html url
- http://www.securityfocus.com/bid/74733 url
- https://blog.cloudflare.com/logjam-the-latest-tls-vulnerability-explained/ url
- https://bugzilla.mozilla.org/show_bug.cgi?id=1138554 url
- https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.19.1_release_notes url
- https://weakdh.org/ url
- https://weakdh.org/imperfect-forward-secrecy.pdf url
- https://www.openssl.org/blog/blog/2015/05/20/logjam-freak-upcoming-changes/ url
- https://www.openssl.org/news/secadv_20150611.txthttps://www.suse.com/security/cve/CVE-2015-4000.html url
- https://www.openssl.org/news/secadv_20150611.txt advisory