← All CVEs

CVE-2004-0112

medium · 5

The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of Kerberos tickets during a handshake, which allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that causes an out-of-bounds read.

5
CVSS
10.4%
EPSS (exploit prob.)
96th
EPSS percentile
2004-11-23
Published

AV:N/AC:L/Au:N/C:N/I:N/A:P

Weaknesses

CWE-125

Affected products

VendorProductAffected versions
ciscofirewall_services_moduleall versions
ciscofirewall_services_module1.1.2
ciscofirewall_services_module1.1.3
ciscofirewall_services_module1.1_(3.005)
ciscofirewall_services_module2.1_(0.208)
hpaaa_serverall versions
hpapache-based_web_server2.0.43.00
hpapache-based_web_server2.0.43.04
symantecclientless_vpn_gateway_44005.0
ciscociscoworks_common_management_foundation2.1
ciscociscoworks_common_services2.2
avayaconverged_communications_server2.0
avayasg2004.4
avayasg2004.31.29
avayasg2034.4
avayasg2034.31.29
avayasg208all versions
avayasg2084.4
avayasg54.2
avayasg54.3
avayasg54.4
applemac_os_x10.3.3
applemac_os_x_server10.3.3
freebsdfreebsd4.8
freebsdfreebsd4.8
freebsdfreebsd4.9
freebsdfreebsd5.1
freebsdfreebsd5.1
freebsdfreebsd5.1
freebsdfreebsd5.2
freebsdfreebsd5.2.1
hphp-ux8.05
hphp-ux11.00
hphp-ux11.11
hphp-ux11.23
openbsdopenbsd3.3
openbsdopenbsd3.4
redhatenterprise_linux3.0
redhatenterprise_linux3.0
redhatenterprise_linux3.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2004-0112