CVE-2002-1563Race Condition in Stunnel

7 documents7 sources
Severity
1.2LOWNVD
EPSS
0.1%
top 75.71%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 12
Latest updateApr 30

Description

stunnel 4.0.3 and earlier allows attackers to cause a denial of service (crash) via SIGCHLD signal handler race conditions that cause an inconsistency in the child counter.

CVSS vector

AV:L/AC:H/C:N/I:N/A:PExploitability: 1.9 | Impact: 2.9

Affected Packages1 packages

NVDstunnel/stunnel4.04

Patches

🔴Vulnerability Details

3
GHSA
GHSA-6234-fx93-pwcr: stunnel 42022-04-30
OSV
CVE-2002-1563: stunnel 42003-05-12
CVEList
CVE-2002-1563: stunnel 42003-04-26

📋Vendor Advisories

2
Red Hat
security flaw2002-10-30
Debian
CVE-2002-1563: stunnel4 - stunnel 4.0.3 and earlier allows attackers to cause a denial of service (crash) ...2002

💬Community

1
Bugzilla
CVE-2002-1563 security flaw2018-08-16
CVE-2002-1563 — Race Condition in Stunnel | cvebase