CVE Vulnerabilities

CVE-2011-5268

Published: Dec 24, 2013 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

connection.c in Bip before 0.8.9 does not properly close sockets, which allows remote attackers to cause a denial of service (file descriptor consumption and crash) via multiple failed SSL handshakes, a different vulnerability than CVE-2013-4550. NOTE: this issue was SPLIT from CVE-2013-4550 because it is a different type of issue.

Affected Software

NameVendorStart VersionEnd Version
BipDuckcorp*0.8.8 (including)
BipDuckcorp0.8.0 (including)0.8.0 (including)
BipDuckcorp0.8.0-rc0 (including)0.8.0-rc0 (including)
BipDuckcorp0.8.0-rc1 (including)0.8.0-rc1 (including)
BipDuckcorp0.8.1 (including)0.8.1 (including)
BipDuckcorp0.8.2 (including)0.8.2 (including)
BipDuckcorp0.8.3 (including)0.8.3 (including)
BipDuckcorp0.8.4 (including)0.8.4 (including)
BipDuckcorp0.8.5 (including)0.8.5 (including)
BipDuckcorp0.8.6 (including)0.8.6 (including)
BipDuckcorp0.8.7 (including)0.8.7 (including)
BipUbuntulucid*
BipUbuntuprecise*
BipUbuntuquantal*
BipUbunturaring*
BipUbuntusaucy*
BipUbuntuupstream*

References