CVE-2003-0851

OpenSSL 0.9.6k allows remote attackers to cause a denial of service (crash via large recursion) via malformed ASN.1 sequences.
References
Link Resource
ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2004-003.txt.asc
ftp://patches.sgi.com/support/free/security/advisories/20040304-01-U.asc
http://marc.info/?l=bugtraq&m=106796246511667&w=2
http://marc.info/?l=bugtraq&m=108403850228012&w=2
http://rhn.redhat.com/errata/RHSA-2004-119.html
http://secunia.com/advisories/17381
http://www.cisco.com/warp/public/707/cisco-sa-20030930-ssl.shtml
http://www.kb.cert.org/vuls/id/412478 Patch Third Party Advisory US Government Resource
http://www.openssl.org/news/secadv_20031104.txt Patch Vendor Advisory
http://www.redhat.com/archives/fedora-announce-list/2005-October/msg00087.html
http://www.securityfocus.com/bid/8970 Patch Vendor Advisory
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5528
ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2004-003.txt.asc
ftp://patches.sgi.com/support/free/security/advisories/20040304-01-U.asc
http://marc.info/?l=bugtraq&m=106796246511667&w=2
http://marc.info/?l=bugtraq&m=108403850228012&w=2
http://rhn.redhat.com/errata/RHSA-2004-119.html
http://secunia.com/advisories/17381
http://www.cisco.com/warp/public/707/cisco-sa-20030930-ssl.shtml
http://www.kb.cert.org/vuls/id/412478 Patch Third Party Advisory US Government Resource
http://www.openssl.org/news/secadv_20031104.txt Patch Vendor Advisory
http://www.redhat.com/archives/fedora-announce-list/2005-October/msg00087.html
http://www.securityfocus.com/bid/8970 Patch Vendor Advisory
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5528
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:cisco:ios:12.1\(11\)e:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.1\(11b\)e:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.2sx:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.2sy:*:*:*:*:*:*:*
OR cpe:2.3:a:cisco:css11000_content_services_switch:*:*:*:*:*:*:*:*
cpe:2.3:a:cisco:pix_firewall:6.2.2_.111:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.6:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.6a:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.6b:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.6c:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.6d:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.6e:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.6f:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.6g:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.6h:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.6i:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.6j:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.6k:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.7:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.7a:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.7b:*:*:*:*:*:*:*
cpe:2.3:o:cisco:pix_firewall_software:6.0:*:*:*:*:*:*:*
cpe:2.3:o:cisco:pix_firewall_software:6.0\(1\):*:*:*:*:*:*:*
cpe:2.3:o:cisco:pix_firewall_software:6.0\(2\):*:*:*:*:*:*:*
cpe:2.3:o:cisco:pix_firewall_software:6.0\(3\):*:*:*:*:*:*:*
cpe:2.3:o:cisco:pix_firewall_software:6.0\(4\):*:*:*:*:*:*:*
cpe:2.3:o:cisco:pix_firewall_software:6.0\(4.101\):*:*:*:*:*:*:*
cpe:2.3:o:cisco:pix_firewall_software:6.1:*:*:*:*:*:*:*
cpe:2.3:o:cisco:pix_firewall_software:6.1\(1\):*:*:*:*:*:*:*
cpe:2.3:o:cisco:pix_firewall_software:6.1\(2\):*:*:*:*:*:*:*
cpe:2.3:o:cisco:pix_firewall_software:6.1\(3\):*:*:*:*:*:*:*
cpe:2.3:o:cisco:pix_firewall_software:6.1\(4\):*:*:*:*:*:*:*
cpe:2.3:o:cisco:pix_firewall_software:6.1\(5\):*:*:*:*:*:*:*
cpe:2.3:o:cisco:pix_firewall_software:6.2:*:*:*:*:*:*:*
cpe:2.3:o:cisco:pix_firewall_software:6.2\(1\):*:*:*:*:*:*:*
cpe:2.3:o:cisco:pix_firewall_software:6.2\(2\):*:*:*:*:*:*:*
cpe:2.3:o:cisco:pix_firewall_software:6.2\(3\):*:*:*:*:*:*:*
cpe:2.3:o:cisco:pix_firewall_software:6.3\(1\):*:*:*:*:*:*:*
cpe:2.3:o:cisco:pix_firewall_software:6.3\(3.102\):*:*:*:*:*:*:*

History

20 Nov 2024, 23:45

Type Values Removed Values Added
References () ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2004-003.txt.asc - () ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2004-003.txt.asc -
References () ftp://patches.sgi.com/support/free/security/advisories/20040304-01-U.asc - () ftp://patches.sgi.com/support/free/security/advisories/20040304-01-U.asc -
References () http://marc.info/?l=bugtraq&m=106796246511667&w=2 - () http://marc.info/?l=bugtraq&m=106796246511667&w=2 -
References () http://marc.info/?l=bugtraq&m=108403850228012&w=2 - () http://marc.info/?l=bugtraq&m=108403850228012&w=2 -
References () http://rhn.redhat.com/errata/RHSA-2004-119.html - () http://rhn.redhat.com/errata/RHSA-2004-119.html -
References () http://secunia.com/advisories/17381 - () http://secunia.com/advisories/17381 -
References () http://www.cisco.com/warp/public/707/cisco-sa-20030930-ssl.shtml - () http://www.cisco.com/warp/public/707/cisco-sa-20030930-ssl.shtml -
References () http://www.kb.cert.org/vuls/id/412478 - Patch, Third Party Advisory, US Government Resource () http://www.kb.cert.org/vuls/id/412478 - Patch, Third Party Advisory, US Government Resource
References () http://www.openssl.org/news/secadv_20031104.txt - Patch, Vendor Advisory () http://www.openssl.org/news/secadv_20031104.txt - Patch, Vendor Advisory
References () http://www.redhat.com/archives/fedora-announce-list/2005-October/msg00087.html - () http://www.redhat.com/archives/fedora-announce-list/2005-October/msg00087.html -
References () http://www.securityfocus.com/bid/8970 - Patch, Vendor Advisory () http://www.securityfocus.com/bid/8970 - Patch, Vendor Advisory
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5528 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5528 -

Information

Published : 2003-12-01 05:00

Updated : 2024-11-20 23:45


NVD link : CVE-2003-0851

Mitre link : CVE-2003-0851

CVE.ORG link : CVE-2003-0851


JSON object : View

Products Affected

cisco

  • pix_firewall_software
  • css11000_content_services_switch
  • ios
  • pix_firewall

openssl

  • openssl