Vulnerability Database

296,172

Total vulnerabilities in the database

CVE-2014-3513

Memory leak in d1_srtp.c in the DTLS SRTP extension in OpenSSL 1.0.1 before 1.0.1j allows remote attackers to cause a denial of service (memory consumption) via a crafted handshake message.

  • Published: Oct 19, 2014
  • Updated: Apr 13, 2023
  • CVE: CVE-2014-3513
  • Severity: High
  • Exploit:

CVSS v2:

  • Severity: High
  • Score: 7.1
  • AV:N/AC:M/Au:N/C:N/I:N/A:C

CWEs:

Software From Fixed in
openssl / openssl 1.0.1-beta2 1.0.1-beta2.x
openssl / openssl 1.0.1h 1.0.1h.x
openssl / openssl 1.0.1c 1.0.1c.x
openssl / openssl 1.0.1g 1.0.1g.x
openssl / openssl 1.0.1-beta3 1.0.1-beta3.x
openssl / openssl 1.0.1a 1.0.1a.x
openssl / openssl 1.0.1-beta1 1.0.1-beta1.x
openssl / openssl 1.0.1d 1.0.1d.x
openssl / openssl 1.0.1b 1.0.1b.x
openssl / openssl 1.0.1e 1.0.1e.x
openssl / openssl 1.0.1f 1.0.1f.x
openssl / openssl 1.0.1i 1.0.1i.x
openssl / openssl 1.0.1 1.0.1.x