CVE-2004-0079
published 2004-11-23CVE-2004-0079: The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a…
PriorityP430high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
9.54%
94.9th percentile
The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.
Affected
229 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| 4d | webstar | — | — |
| 4d | webstar | — | — |
| 4d | webstar | — | — |
| 4d | webstar | — | — |
| 4d | webstar | — | — |
| 4d | webstar | — | — |
| 4d | webstar | — | — |
| 4d | webstar | — | — |
| apple | mac_os_x | — | — |
| apple | mac_os_x_server | — | — |
| avaya | converged_communications_server | — | — |
| avaya | intuity_audix | — | — |
| avaya | intuity_audix | — | — |
| avaya | intuity_audix | — | — |
| avaya | s8300 | — | — |
| avaya | s8300 | — | — |
| avaya | s8500 | — | — |
| avaya | s8500 | — | — |
| avaya | s8700 | — | — |
| avaya | s8700 | — | — |
| avaya | sg200 | — | — |
| avaya | sg200 | — | — |
| avaya | sg203 | — | — |
| avaya | sg203 | — | — |
| avaya | sg208 | — | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv7.5HIGH
vendor_debian7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
security flaw
vendor_redhat·2004-03-17·CVSS 7.5
CVE-2004-0079 [HIGH] security flaw
security flaw
The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.
Statement: Red Hat Enterprise Linux 5 is not vulnerable to this issue as it contains a backported patch.
Cisco
Cisco OpenSSL Implementation Vulnerability
vendor_cisco·2004-03-17
CVE-2004-0079 CWE-399 Cisco OpenSSL Implementation Vulnerability
Cisco OpenSSL Implementation Vulnerability
A new vulnerability in the
OpenSSL
implementation for
SSL has been announced on March 17, 2004.
An affected network device running an SSL server based on an affected
OpenSSL implementation may be vulnerable to a Denial of Service (DoS) attack.
There are workarounds available to mitigate the effects of this vulnerability
on Cisco products in the workaround section of this advisory. Cisco is
providing fixed software, and recommends that customers upgrade to it when it
is available.
This advisory will be posted at
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20040317-openssl.
Debian
CVE-2004-0079: openssl - The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0....
vendor_debian·2004·CVSS 7.5
CVE-2004-0079 [HIGH] CVE-2004-0079: openssl - The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0....
The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.
Scope: local
bookworm: resolved (fixed in 0.9.7d-1)
bullseye: resolved (fixed in 0.9.7d-1)
forky: resolved (fixed in 0.9.7d-1)
sid: resolved (fixed in 0.9.7d-1)
trixie: resolved (fixed in 0.9.7d-1)
Red Hat
CVE-2005-1730: Multiple vulnerabilities in the OpenSSL ASN
vendor_redhat·CVSS 5.0
CVE-2005-1730 [MEDIUM] CVE-2005-1730: Multiple vulnerabilities in the OpenSSL ASN
Multiple vulnerabilities in the OpenSSL ASN.1 parser, as used in Novell iManager 2.0.2, allows remote attackers to cause a denial of service (NULL pointer dereference) via crafted packets, as demonstrated by "OpenSSL ASN.1 brute forcer." NOTE: this issue might overlap CVE-2004-0079, CVE-2004-0081, or CVE-2004-0112.
Statement: Based on our research we believe that the "OpenSSL ASN.1 brute forcer." is actually exploiting flaws CVE-2003-0543, CVE-2003-0544, CVE-2003-0545. Those issues are all addressed in Red Hat Enterprise Linux and therefore CVE-2005-1730 is a duplicate assignment.
Cisco
Cisco OpenSSL Implementation Vulnerability
vendor_cisco
CVE-2004-0079 Cisco OpenSSL Implementation Vulnerability
CVE-2004-0079: Cisco OpenSSL Implementation Vulnerability
A new vulnerability in the OpenSSL implementation for SSL has been announced on March 17, 2004. An affected network device running an SSL server based on an affected OpenSSL implementation may be vulnerable to a Denial of Service (DoS) attack. There are
CWE: CWE-399, CWE-399
Bug IDs: CSCee00041, CSCed90672, CSCee02055, CSCed96246, CSCee01234
GHSA
GHSA-xcj5-xcx2-vvvv: The do_change_cipher_spec function in OpenSSL 0
ghsa_unreviewed·2022-05-03
CVE-2004-0079 [MEDIUM] GHSA-xcj5-xcx2-vvvv: The do_change_cipher_spec function in OpenSSL 0
The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.
GHSA
GHSA-3hr7-2v28-gj4j: Multiple vulnerabilities in the OpenSSL ASN
ghsa_unreviewed·2022-05-01·CVSS 7.5
CVE-2005-1730 [HIGH] GHSA-3hr7-2v28-gj4j: Multiple vulnerabilities in the OpenSSL ASN
Multiple vulnerabilities in the OpenSSL ASN.1 parser, as used in Novell iManager 2.0.2, allows remote attackers to cause a denial of service (NULL pointer dereference) via crafted packets, as demonstrated by "OpenSSL ASN.1 brute forcer." NOTE: this issue might overlap CVE-2004-0079, CVE-2004-0081, or CVE-2004-0112.
OSV
CVE-2004-0079: The do_change_cipher_spec function in OpenSSL 0
osv·2004-11-23·CVSS 7.5
CVE-2004-0079 [HIGH] CVE-2004-0079: The do_change_cipher_spec function in OpenSSL 0
The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2004-0079 security flaw
bugzilla·2018-08-16·CVSS 7.5
CVE-2004-0079 [HIGH] CVE-2004-0079 security flaw
CVE-2004-0079 security flaw
Flaw bug created to hold information about an old flaw we knew something about. For more details see the MITRE CVE description.
Discussion:
MITRE description:
The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.
---
Statement:
Red Hat Enterprise Linux 5 is not vulnerable to this issue as it contains a backported patch.
Bugzilla
CVE-2004-0079 OpenSSL remote DoS
bugzilla·2005-10-31·CVSS 7.5
CVE-2004-0079 [HIGH] CVE-2004-0079 OpenSSL remote DoS
CVE-2004-0079 OpenSSL remote DoS
This flaw was originally believed to only affect versions of OpenSSL after
0.9.6b as proved and verified with Codenomicon test suite (pkt539.c as
distributed to vendors via NISCC from OpenSSL). Customer has however supplied
an alternative reproducer that proves this can be triggered in older versions too.
Discussion:
Errata RHSA-2005:829 in progress to correct this flaw.
---
An advisory has been issued which should help the problem
described in this bug report. This report is therefore being
closed with a resolution of ERRATA. For more information
on the solution and/or where to find the updated files,
please follow the link below. You may reopen this bug report
if the solution does not work for you.
http://rhn.redhat.com/errata/RHSA-2005-829.html
Bugzilla
CVE-2004-0079 OpenSSL remote DoS
bugzilla·2005-10-31·CVSS 7.5
CVE-2004-0079 [HIGH] CVE-2004-0079 OpenSSL remote DoS
CVE-2004-0079 OpenSSL remote DoS
CAN-2004-0079, a remote crasher, was originally believed to only affect versions
of OpenSSL after 0.9.6b verified with Codenomicon test suite (see pkt539.c).
However we've had a customer report that this affects 0.9.6b as shipped with
RHEL2.1 via a different reproducer. This therefore affects the openssl096b
compat packages as shipped with RHEL3 and RHEL4. (severity reduced to moderate
for compat packages)
Discussion:
An advisory has been issued which should help the problem
described in this bug report. This report is therefore being
closed with a resolution of ERRATA. For more information
on the solution and/or where to find the updated files,
please follow the link below. You may reopen this bug report
if the solution does not work for you.
http://rh
ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:05.openssl.ascftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2004-005.txt.ascftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2004.10/SCOSA-2004.10.txthttp://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000834http://docs.info.apple.com/article.html?artnum=61798http://fedoranews.org/updates/FEDORA-2004-095.shtmlhttp://lists.apple.com/archives/security-announce/2005//Aug/msg00001.htmlhttp://lists.apple.com/archives/security-announce/2005/Aug/msg00000.htmlhttp://lists.apple.com/mhonarc/security-announce/msg00045.htmlhttp://marc.info/?l=bugtraq&m=107953412903636&w=2http://marc.info/?l=bugtraq&m=108403806509920&w=2http://secunia.com/advisories/11139http://secunia.com/advisories/17381http://secunia.com/advisories/17398http://secunia.com/advisories/17401http://secunia.com/advisories/18247http://security.gentoo.org/glsa/glsa-200403-03.xmlhttp://sunsolve.sun.com/pub-cgi/retrieve.pl?doc=fsalert/57524http://support.avaya.com/elmodocs2/security/ASA-2005-239.htmhttp://support.lexmark.com/index?page=content&id=TE88&locale=EN&userlocale=EN_UShttp://www.ciac.org/ciac/bulletins/o-101.shtmlhttp://www.cisco.com/warp/public/707/cisco-sa-20040317-openssl.shtmlhttp://www.debian.org/security/2004/dsa-465http://www.kb.cert.org/vuls/id/288574http://www.linuxsecurity.com/advisories/engarde_advisory-4135.htmlhttp://www.mandriva.com/security/advisories?name=MDKSA-2004:023http://www.novell.com/linux/security/advisories/2004_07_openssl.htmlhttp://www.openssl.org/news/secadv_20040317.txthttp://www.redhat.com/archives/fedora-announce-list/2005-October/msg00087.htmlhttp://www.redhat.com/support/errata/RHSA-2004-120.htmlhttp://www.redhat.com/support/errata/RHSA-2004-121.htmlhttp://www.redhat.com/support/errata/RHSA-2004-139.htmlhttp://www.redhat.com/support/errata/RHSA-2005-829.htmlhttp://www.redhat.com/support/errata/RHSA-2005-830.htmlhttp://www.securityfocus.com/bid/9899http://www.slackware.org/security/viewer.php?l=slackware-security&y=2004&m=slackware-security.455961http://www.trustix.org/errata/2004/0012http://www.uniras.gov.uk/vuls/2004/224012/index.htmhttp://www.us-cert.gov/cas/techalerts/TA04-078A.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/15505https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2621https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5770https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A870https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A975https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9779ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:05.openssl.ascftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2004-005.txt.ascftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2004.10/SCOSA-2004.10.txthttp://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000834http://docs.info.apple.com/article.html?artnum=61798http://fedoranews.org/updates/FEDORA-2004-095.shtmlhttp://lists.apple.com/archives/security-announce/2005//Aug/msg00001.htmlhttp://lists.apple.com/archives/security-announce/2005/Aug/msg00000.htmlhttp://lists.apple.com/mhonarc/security-announce/msg00045.htmlhttp://marc.info/?l=bugtraq&m=107953412903636&w=2http://marc.info/?l=bugtraq&m=108403806509920&w=2http://secunia.com/advisories/11139http://secunia.com/advisories/17381http://secunia.com/advisories/17398http://secunia.com/advisories/17401http://secunia.com/advisories/18247http://security.gentoo.org/glsa/glsa-200403-03.xmlhttp://sunsolve.sun.com/pub-cgi/retrieve.pl?doc=fsalert/57524http://support.avaya.com/elmodocs2/security/ASA-2005-239.htmhttp://support.lexmark.com/index?page=content&id=TE88&locale=EN&userlocale=EN_UShttp://www.ciac.org/ciac/bulletins/o-101.shtmlhttp://www.cisco.com/warp/public/707/cisco-sa-20040317-openssl.shtmlhttp://www.debian.org/security/2004/dsa-465http://www.kb.cert.org/vuls/id/288574http://www.linuxsecurity.com/advisories/engarde_advisory-4135.htmlhttp://www.mandriva.com/security/advisories?name=MDKSA-2004:023http://www.novell.com/linux/security/advisories/2004_07_openssl.htmlhttp://www.openssl.org/news/secadv_20040317.txthttp://www.redhat.com/archives/fedora-announce-list/2005-October/msg00087.htmlhttp://www.redhat.com/support/errata/RHSA-2004-120.htmlhttp://www.redhat.com/support/errata/RHSA-2004-121.htmlhttp://www.redhat.com/support/errata/RHSA-2004-139.htmlhttp://www.redhat.com/support/errata/RHSA-2005-829.htmlhttp://www.redhat.com/support/errata/RHSA-2005-830.htmlhttp://www.securityfocus.com/bid/9899http://www.slackware.org/security/viewer.php?l=slackware-security&y=2004&m=slackware-security.455961http://www.trustix.org/errata/2004/0012http://www.uniras.gov.uk/vuls/2004/224012/index.htmhttp://www.us-cert.gov/cas/techalerts/TA04-078A.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/15505https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2621https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5770https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A870https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A975https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9779
2004-11-23
Published