CVE漏洞中文网

0DayBank一个专门收集整理全球互联网漏洞的公开发布网站
  1. 首页
  2. CVE
  3. 正文

CVE-2016-8610 Red Hat OpenSSL Denial of Service Vulnerability

2016年11月1日 1910点热度 0人点赞 0条评论

漏洞类别:Local

漏洞等级:

漏洞信息

A denial of service flaw was found in the way the SSL/TLS protocol, defined processing of ALERT packets during an SSL handshake. An attacker could use this flaw to DoS servers compiled against cryptographic libraries, which do not allocate an extra thread to process ClientHello packets.

This flaw affects applications that are compiled against OpenSSL or GnuTLS and do not allocate an extra thread for processing ClientHello messages. Nginx is affected by this issue; Apache httpd is not affected by this issue.

Affected Versions:
OpenSSL under Red Hat Enterprise Linux 5,6,7

漏洞危害

An exploit could allow the attacker to cause a denial of service condition.

解决方案

There are no vendor supplied patches available at this time. Note : Red Hat already marked this vulnerability as Won't fixRed Hat CVE-2016-8610

0day

标签: 暂无
最后更新:2016年11月1日

小助手

这个人很懒,什么都没留下

点赞
< 上一篇
下一篇 >

文章评论

您需要 登录 之后才可以评论

COPYRIGHT © 2024 www.pdr.cn CVE漏洞中文网. ALL RIGHTS RESERVED.

鲁ICP备2022031030号

联系邮箱:wpbgssyubnmsxxxkkk@proton.me