Vulnerability Description
Buffer overflow in ssldump 0.9b2 and earlier, when running in decryption mode, allows remote attackers to execute arbitrary code via a long RSA PreMasterSecret.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Eric Rescorla | Ssldump | 0.9b1 |
References
- http://www.iss.net/security_center/static/10086.phpPatch
- http://www.rtfm.com/ssldump/Patch
- http://www.securityfocus.com/archive/1/291329
- http://www.securityfocus.com/bid/5690Patch
- http://www.iss.net/security_center/static/10086.phpPatch
- http://www.rtfm.com/ssldump/Patch
- http://www.securityfocus.com/archive/1/291329
- http://www.securityfocus.com/bid/5690Patch
FAQ
What is CVE-2002-2207?
CVE-2002-2207 is a vulnerability with a CVSS score of 10.0 (HIGH). Buffer overflow in ssldump 0.9b2 and earlier, when running in decryption mode, allows remote attackers to execute arbitrary code via a long RSA PreMasterSecret.
How severe is CVE-2002-2207?
CVE-2002-2207 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2002-2207?
Check the references section above for vendor advisories and patch information. Affected products include: Eric Rescorla Ssldump.