Null Dereference Denial of Service Vulnerability in OpenSSL

Null Dereference Denial of Service Vulnerability in OpenSSL

CVE-2004-0079 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.

Learn more about our Web Application Penetration Testing UK.