VDB
CVE-2004-0079
CVE-2004-0079
PUBLISHED
CVSS 5 MEDIUM
The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.
EPSS 2.28% · 84.9th percentile
Risk Scores
CVSS v2.0
5
EPSS Score
2.28%
84.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| apple | mac_os_x | 10.3.3 |
| openbsd | openbsd | 3.4, 3.3 |
| avaya | sg5 | 4.4, 4.3, 4.2 |
| cisco | ciscoworks_common_services | 2.2 |
| securecomputing | sidewinder | 5.2.0.03, 5.2.0.04, 5.2.1 |
| sgi | propack | 3.0, 2.3, 2.4 |
| sun | crypto_accelerator_4000 | 1.0 |
| cisco | application_and_content_networking_software | |
| avaya | s8700 | r2.0.1, * |
| freebsd | freebsd | 5.2, 5.2.1, 4.9 |
| n/a | n/a | n/a |
| stonesoft | stonebeat_webcluster | 2.5, 2.0 |
| redhat | enterprise_linux_desktop | 3.0 |
| avaya | sg208 | 4.4 |
| redhat | enterprise_linux | 3.0, 3.0, 3.0 |
| avaya | s8300 | r2.0.0, * |
| cisco | firewall_services_module | 2.1_\(0.208\), 1.1_\(3.005\), 1.1.3 |
| cisco | pix_firewall_software | 6.0\(2\), 6.0\(1\), 6.0 |
| bluecoat | cacheos_ca_sa | 4.1.12, 4.1.10 |
| avaya | intuity_audix | s3400, 5.1.46, s3210 |
…and 47 more
Timeline
- Jul 18, 2003 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Sep 3, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 17, 2022 EPSS Score
- Feb 8, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- May 24, 2023 EPSS Score
- Jul 15, 2023 EPSS Score
- Sep 6, 2023 EPSS Score
References
- 9899 vdb
- FEDORA-2005-1042 vendor-advisory
- ESA-20040317-003 vendor-advisory
- SSRT4717 vendor-advisory
- RHSA-2004:121 vendor-advisory
- MDKSA-2004:023 vendor-advisory
- oval:org.mitre.oval:def:2621 vdb
- CLA-2004:834 vendor-advisory
- SCOSA-2004.10 vendor-advisory
- 17381 third-party-advisory
- http://www.uniras.gov.uk/vuls/2004/224012/index.htm url
- FEDORA-2004-095 vendor-advisory
- oval:org.mitre.oval:def:9779 vdb
- oval:org.mitre.oval:def:975 vdb
- 57524 vendor-advisory
- SuSE-SA:2004:007 vendor-advisory
- http://lists.apple.com/mhonarc/security-announce/msg00045.html url
- http://www.openssl.org/news/secadv_20040317.txt url
- FreeBSD-SA-04:05 vendor-advisory
- NetBSD-SA2004-005 vendor-advisory
…and 26 more