exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 1 of 1 RSS Feed

Files

Mandriva Linux Security Advisory 2009-120
Posted May 21, 2009
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2009-120 - Multiple security vulnerabilities has been identified and fixed in OpenSSL. The dtls1_buffer_record function in ssl/d1_pkt.c in OpenSSL 0.9.8k and earlier 0.9.8 versions allows remote attackers to cause a denial of service (memory consumption) via a large series of future epoch DTLS records that are buffered in a queue, aka DTLS record buffer limitation bug. Multiple memory leaks in the dtls1_process_out_of_seq_message function in ssl/d1_both.c in OpenSSL 0.9.8k and earlier 0.9.8 versions allow remote attackers to cause a denial of service (memory consumption) via DTLS records that (1) are duplicates or (2) have sequence numbers much greater than current sequence numbers, aka DTLS fragment handling memory leak. The updated packages have been patched to prevent this.

tags | advisory, remote, denial of service, vulnerability, memory leak
systems | linux, mandriva
advisories | CVE-2009-1377, CVE-2009-1378
SHA-256 | 7e8ebc6722e9cb207f931607e5f931703c3b62ea75e530755e6a4508a4f1894b
Page 1 of 1
Back1Next

Top Authors In Last 30 Days

Recent News

News RSS Feed
Black Basta Exploits Patched Windows Privilege Escalation Bug
Posted Jun 13, 2024

tags | headline, malware, microsoft, flaw
Kaspersky Researchers Punch Holes In Biometrics Hardware Security
Posted Jun 13, 2024

tags | headline, russia, flaw
Prevalence And Impact Of Password Exposure Vulns In ICS/OT
Posted Jun 13, 2024

tags | headline, flaw, password
Apple Patches Possibly The First Ever Spatial Computing Hack
Posted Jun 13, 2024

tags | headline, flaw, patch, apple
White House Report Dishes Deet On All 11 Major Government Breaches From 2023
Posted Jun 13, 2024

tags | headline, hacker, government, usa, data loss, flaw
Microsoft President To Testify Over Security Lapses
Posted Jun 13, 2024

tags | headline, hacker, government, microsoft, usa, data loss, flaw
Ransomware Group Exploits PHP Vulnerability Days After Disclosure
Posted Jun 12, 2024

tags | headline, hacker, cybercrime, flaw, cryptography
Let's Kick Off The Summer With A Pwn-Me-By-Wifi Bug In Microsoft Windows
Posted Jun 12, 2024

tags | headline, microsoft, wireless, flaw
China State Hackers Infected 20,000 Fortinet VPNs
Posted Jun 12, 2024

tags | headline, hacker, government, china, flaw, cyberwar, spyware, cryptography
23andMe Investigated Over Hack That Hit 7M Users
Posted Jun 12, 2024

tags | headline, hacker, government, privacy, canada, britain, data loss
View More News →
packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close