7.5

CVE-2014-8176

Exploit
The dtls1_clear_queues function in ssl/d1_lib.c in OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h frees data structures without considering that application data can arrive between a ChangeCipherSpec message and a Finished message, which allows remote DTLS peers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via unexpected application data.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
OpenSSL ≫ OpenSSL Version <= 0.9.8z
OpenSSL ≫ OpenSSL Version 1.0.0
OpenSSL ≫ OpenSSL Version 1.0.0 Update beta1
OpenSSL ≫ OpenSSL Version 1.0.0 Update beta2
OpenSSL ≫ OpenSSL Version 1.0.0 Update beta3
OpenSSL ≫ OpenSSL Version 1.0.0 Update beta4
OpenSSL ≫ OpenSSL Version 1.0.0 Update beta5
OpenSSL ≫ OpenSSL Version 1.0.0a
OpenSSL ≫ OpenSSL Version 1.0.0b
OpenSSL ≫ OpenSSL Version 1.0.0c
OpenSSL ≫ OpenSSL Version 1.0.0d
OpenSSL ≫ OpenSSL Version 1.0.0e
OpenSSL ≫ OpenSSL Version 1.0.0f
OpenSSL ≫ OpenSSL Version 1.0.0g
OpenSSL ≫ OpenSSL Version 1.0.0h
OpenSSL ≫ OpenSSL Version 1.0.0i
OpenSSL ≫ OpenSSL Version 1.0.0j
OpenSSL ≫ OpenSSL Version 1.0.0k
OpenSSL ≫ OpenSSL Version 1.0.0l
OpenSSL ≫ OpenSSL Version 1.0.1
OpenSSL ≫ OpenSSL Version 1.0.1 Update beta1
OpenSSL ≫ OpenSSL Version 1.0.1 Update beta2
OpenSSL ≫ OpenSSL Version 1.0.1 Update beta3
OpenSSL ≫ OpenSSL Version 1.0.1a
OpenSSL ≫ OpenSSL Version 1.0.1b
OpenSSL ≫ OpenSSL Version 1.0.1c
OpenSSL ≫ OpenSSL Version 1.0.1d
OpenSSL ≫ OpenSSL Version 1.0.1e
OpenSSL ≫ OpenSSL Version 1.0.1f
OpenSSL ≫ OpenSSL Version 1.0.1g
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 16.59% 0.966
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

https://cert-portal.siemens.com/productcert/pdf/ssa-412672.pdf
http://rhn.redhat.com/errata/RHSA-2016-2957.html
http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00037.html
http://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2015-008.txt.asc
http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00007.html
http://www.debian.org/security/2015/dsa-3287
https://bto.bluecoat.com/security-advisory/sa98
https://kc.mcafee.com/corporate/index?page=content&id=SB10122
https://openssl.org/news/secadv/20150611.txt
https://security.gentoo.org/glsa/201506-02
https://www.openssl.org/news/secadv_20150611.txt
Vendor Advisory
http://fortiguard.com/advisory/openssl-vulnerabilities-june-2015
http://rhn.redhat.com/errata/RHSA-2015-1115.html
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150612-openssl
http://www.fortiguard.com/advisory/openssl-vulnerabilities-june-2015
http://www.securityfocus.com/bid/75159
http://www.securitytracker.com/id/1032564
http://www.ubuntu.com/usn/USN-2639-1
https://github.com/openssl/openssl/commit/470990fee0182566d439ef7e82d1abf18b7085d7
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05184351
Third Party Advisory
https://rt.openssl.org/Ticket/Display.html?id=3286&user=guest&pass=guest
Exploit