Friday
Mar272009
OpenSSL Vulnerabilities

What are considered moderate vulnerabilities in SSL/TLS which e-commerce sites and other sites using OpenSSL it is possible to cause a DoS attack by causing OpenSSL to crash.
- ASN1 Printing Crash- CVE-2009-0590
- Incorrect Error Checking During CMS verification- CVE-2009-0591
- Invalid ASN1 clearing check- CVE-2009-00789
Reader Comments