Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0227 (yaSSL)

BugsAlert Home > CVE-2008-0227 (yaSSL)
 
 

yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allows remote attackers to cause a denial of service (crash) via a Hello packet containing a large size value, which triggers a buffer over-read in the HASHwithTransform::Update function in hash.cpp.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0227

Learn more about CVE-2008-0227 (yaSSL)
 
Tags: cve-2008-0227 yassl

Related Items

      CVE-2008-2127 (CMS Faethon)

      CVE-2008-2882 (shibby_shop)

      CVE-2008-2251 (windows_2000, windows_server_2003, windows_server_2008, windows_xp)

      CVE-2008-2110 (QTOFileManager)

      Debian update for libnss-ldap

      Bugtraq: SurgeMail v.38k4 webmail Host header crash

      CVE-2007-6621 (Joovili)

 

Pixel