CVE-2002-0656 PUBLISHED CVSS 7.5 HIGH

Buffer overflows in OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, allow remote attackers to execute arbitrary code via (1) a large client master key in SSL2 or (2) a large session ID in SSL3.

EPSS 87.76% · 99.5th percentile

Risk Scores

CVSS v2.0
7.5
EPSS Score
87.76%
99.5th percentile

Affected Products

VendorProductVersions
opensslopenssl0.9.7, 0.9.1c, 0.9.2b
applemac_os_x10.1.1, 10.0.1, 10.0.2
oraclehttp_server9.0.1, 9.2.0
oracleapplication_server1.0.2, 1.0.2.1s, 1.0.2.2
n/an/an/a
oraclecorporate_time_outlook_connector3.3, 3.1.2, 3.1.1

Timeline

References

Open in Interactive Console →