CVE-2004-0081 PUBLISHED CVSS 5 MEDIUM

OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a denial of service (infinite loop), as demonstrated using the Codenomicon TLS Test Tool.

EPSS 2.39% · 84.9th percentile

Risk Scores

CVSS v2.0
5
EPSS Score
2.39%
84.9th percentile

Affected Products

VendorProductVersions
openbsdopenbsd3.4, 3.3
hpapache-based_web_server2.0.43.04, 2.0.43.00
ciscoaccess_registrar
securecomputingsidewinder5.2.0.01, 5.2, 5.2.0.02
hpwbema.01.05.08, a.02.00.00, a.02.00.01
checkpointvpn-1vsx_ng_with_application_intelligence, next_generation_fp0, next_generation_fp1
stonesoftstonebeat_webcluster2.0, 2.5
applemac_os_x_server10.3.3
ciscothreat_response
dellbsafe_ssl-j3.1, 3.0.1, 3.0
ciscociscoworks_common_services2.2
avayasg54.3, 4.2, 4.4
applemac_os_x10.3.3
redhatenterprise_linux3.0, 3.0, 3.0
avayaintuity_audixs3400, s3210, 5.1.46
avayaconverged_communications_server2.0
ciscocss_secure_content_accelerator1.0, 2.0
neoterisinstant_virtual_extranet3.2, 3.0, 3.3
stonesoftstonegate_vpn_client2.0.8, 1.7.2, 2.0
ciscoapplication_and_content_networking_software

…and 47 more

Timeline

References

…and 6 more

Open in Interactive Console →