Free and open-source vulnerability scanner
Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.
Install NowAvailable for macOS, Windows, and Linux

OpenSSL: DoS Vulnerability (CVE-2004-0112) (Linux)
Information
Severity
Severity
Family
Family
CVSSv2 Base
CVSSv2 Base
CVSSv2 Vector
CVSSv2 Vector
Solution Type
Solution Type
Created
Created
Modified
Modified
Summary
OpenSSL is prone to a denial of service (DoS) vulnerability.
Insight
Insight
The SSL/TLS handshaking code in OpenSSL, when using Kerberos ciphersuites, does not properly check the length of Kerberos tickets during a handshake, which allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that causes an out-of-bounds read.
Affected Software
Affected Software
OpenSSL 0.9.7a through 0.9.7c.
Detection Method
Detection Method
Checks if a vulnerable version is present on the target host.
Solution
Solution
Update OpenSSL to version 0.9.7d or later. See the references for more details.