差異處

這裏顯示兩個版本的差異處。

連向這個比對檢視

兩邊的前次修訂版前次修改
下次修改
前次修改
cve:cve-2014-0224 [2014/06/26 08:37] jalcve:cve-2014-0224 [2014/06/26 11:07] (目前版本) jal
行 1: 行 1:
 ====== CVE-2014-0224 OpenSSL MITM ChangeCipherSpec (CCS) Injection flaw ====== ====== CVE-2014-0224 OpenSSL MITM ChangeCipherSpec (CCS) Injection flaw ======
 +In additon, OpenSSL also regarding following seven vulnerabilities. Some of vendor had max tham to a "Security Advisories"
 +
 +^ CVE Number ^ CVSS base score ^ Description ^
 +| [[http://www.cvedetails.com/cve/CVE-2014-0224|CVE-2014-0224]] | 6.8 | SSL/TLS MITM vulnerability |
 +| [[http://www.cvedetails.com/cve/CVE-2014-0221|CVE-2014-0221]] | 4.3 | DTLS recursion flaw |
 +| [[http://www.cvedetails.com/cve/CVE-2014-0195|CVE-2014-0195]] | 6.8 | DTLS invalid fragment vulnerability |
 +| [[http://www.cvedetails.com/cve/CVE-2014-0198|CVE-2014-0198]] | 4.3 | SSL_MODE_RELEASE_BUFFERS NULL pointer dereference |
 +| [[http://www.cvedetails.com/cve/CVE-2010-5298|CVE-2010-5298]] | 4.0 | SSL_MODE_RELEASE_BUFFERS session injection or denial of service |
 +| [[http://www.cvedetails.com/cve/CVE-2014-3470|CVE-2014-3470]] | 4.3 | Anonymous ECDH denial of service |
 +| [[http://www.cvedetails.com/cve/CVE-2014-0076|CVE-2014-0076]] | 4.3 | ECDSA nonce disclosure using side-channel attack |
  
 ===== About Networking Vendors ===== ===== About Networking Vendors =====
cve/cve-2014-0224.1403771857.txt.gz · 上一次變更: 2014/06/26 08:37 由 jal
上一頁 | 下一頁 | 回首頁 | RSS Feed | Facebook