MEDIUM · 5.0

CVE-2004-0112

The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of Kerberos tickets during a handshake, which allows remote att...

Vulnerability Description

The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of Kerberos tickets during a handshake, which allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that causes an out-of-bounds read.

CVSS Score

5.0

MEDIUM

AV:N/AC:L/Au:N/C:N/I:N/A:P
Confidentiality
NONE
Integrity
NONE
Availability
PARTIAL

Affected Products

VendorProductVersions
CiscoFirewall Services ModuleAll versions
HpAaa ServerAll versions
HpApache-Based Web Server2.0.43.00
SymantecClientless Vpn Gateway 44005.0
CiscoCiscoworks Common Management Foundation2.1
CiscoCiscoworks Common Services2.2
AvayaConverged Communications Server2.0
AvayaSg2004.4
AvayaSg2034.4
AvayaSg208All versions
AvayaSg54.2
AppleMac Os X10.3.3
AppleMac Os X Server10.3.3
FreebsdFreebsd4.8
HpHp-Ux8.05
OpenbsdOpenbsd3.3
RedhatEnterprise Linux3.0
RedhatEnterprise Linux Desktop3.0
RedhatLinux7.2
ScoOpenserver5.0.6

Related Weaknesses (CWE)

References

FAQ

What is CVE-2004-0112?

CVE-2004-0112 is a vulnerability with a CVSS score of 5.0 (MEDIUM). The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of Kerberos tickets during a handshake, which allows remote att...

How severe is CVE-2004-0112?

CVE-2004-0112 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2004-0112?

Check the references section above for vendor advisories and patch information. Affected products include: Cisco Firewall Services Module, Hp Aaa Server, Hp Apache-Based Web Server, Symantec Clientless Vpn Gateway 4400, Cisco Ciscoworks Common Management Foundation.