Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-1678 (openssl)

BugsAlert Home > CVE-2008-1678 (openssl)
 
 

Memory leak in the zlib_stateful_init function in crypto/comp/c_zlib.c in libssl in OpenSSL 0.9.8f through 0.9.8h allows remote attackers to cause a denial of service (memory consumption) via multiple calls, as demonstrated by initial SSL client handshakes to the Apache HTTP Server mod_ssl that specify a compression algorithm.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-1678

Learn more about CVE-2008-1678 (openssl)
 
Tags: cve-2008-1678 openssl

Related Items

      FrSIRT - Turbolinux Security Update Fixes phpMyAdmin Cross Site Scripting

      CVE-2008-4160 (opensolaris)

      Vuln: autofs nosuid Mount Option Local Privilege Escalation Vulnerability

      rPath update for kernel

      WORM_VBWORM.AC

      Cisco Secure ACS EAP Parsing Vulnerability

      Bugtraq: CORE-2007-0821: Lotus Notes buffer overflow in the Lotus WorkSheet file processor

 

Pixel