Total vulnerabilities in the database
In OpenSSL 1.1.0 before 1.1.0d, if a malicious server supplies bad parameters for a DHE or ECDHE key exchange then this can result in the client attempting to dereference a NULL pointer leading to a client crash. This could be exploited in a Denial of Service attack.
Software | From | Fixed in |
---|---|---|
openssl / openssl | 1.1.0c | 1.1.0c.x |
openssl / openssl | 1.1.0b | 1.1.0b.x |
openssl / openssl | 1.1.0 | 1.1.0.x |
openssl / openssl | 1.1.0a | 1.1.0a.x |
oracle / jd_edwards_enterpriseone_tools | 9.2 | 9.2.x |
oracle / agile_engineering_data_management | 6.1.3 | 6.1.3.x |
oracle / agile_engineering_data_management | 6.2.0 | 6.2.0.x |
oracle / jd_edwards_world_security | a9.1 | a9.1.x |
oracle / jd_edwards_world_security | a9.2 | a9.2.x |
oracle / jd_edwards_world_security | a9.3 | a9.3.x |
oracle / jd_edwards_world_security | a9.4 | a9.4.x |
oracle / communications_operations_monitor | 3.4 | 3.4.x |
oracle / communications_operations_monitor | 4.0 | 4.0.x |
oracle / communications_eagle_lnp_application_processor | 10.0 | 10.0.x |
oracle / communications_eagle_lnp_application_processor | 10.1 | 10.1.x |
oracle / communications_eagle_lnp_application_processor | 10.2 | 10.2.x |
oracle / communications_application_session_controller | 3.7.1 | 3.7.1.x |
oracle / communications_application_session_controller | 3.8.0 | 3.8.0.x |