CVE Vulnerabilities

CVE-2013-6450

Published: Jan 01, 2014 | Modified: Nov 07, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.8 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The DTLS retransmission implementation in OpenSSL 1.0.0 before 1.0.0l and 1.0.1 before 1.0.1f does not properly maintain data structures for digest and encryption contexts, which might allow man-in-the-middle attackers to trigger the use of a different context and cause a denial of service (application crash) by interfering with packet delivery, related to ssl/d1_both.c and ssl/t1_enc.c.

Affected Software

Name Vendor Start Version End Version
Openssl Openssl 1.0.0 (including) 1.0.0 (including)
Openssl Openssl 1.0.0-beta1 (including) 1.0.0-beta1 (including)
Openssl Openssl 1.0.0-beta2 (including) 1.0.0-beta2 (including)
Openssl Openssl 1.0.0-beta3 (including) 1.0.0-beta3 (including)
Openssl Openssl 1.0.0-beta4 (including) 1.0.0-beta4 (including)
Openssl Openssl 1.0.0-beta5 (including) 1.0.0-beta5 (including)
Openssl Openssl 1.0.0a (including) 1.0.0a (including)
Openssl Openssl 1.0.0b (including) 1.0.0b (including)
Openssl Openssl 1.0.0c (including) 1.0.0c (including)
Openssl Openssl 1.0.0d (including) 1.0.0d (including)
Openssl Openssl 1.0.0e (including) 1.0.0e (including)
Openssl Openssl 1.0.0f (including) 1.0.0f (including)
Openssl Openssl 1.0.0g (including) 1.0.0g (including)
Openssl Openssl 1.0.0h (including) 1.0.0h (including)
Openssl Openssl 1.0.0i (including) 1.0.0i (including)
Openssl Openssl 1.0.0j (including) 1.0.0j (including)
Openssl Openssl 1.0.1 (including) 1.0.1 (including)
Openssl Openssl 1.0.1-beta1 (including) 1.0.1-beta1 (including)
Openssl Openssl 1.0.1-beta2 (including) 1.0.1-beta2 (including)
Openssl Openssl 1.0.1-beta3 (including) 1.0.1-beta3 (including)
Openssl Openssl 1.0.1a (including) 1.0.1a (including)
Openssl Openssl 1.0.1b (including) 1.0.1b (including)
Openssl Openssl 1.0.1c (including) 1.0.1c (including)
Openssl Openssl 1.0.1d (including) 1.0.1d (including)
Openssl Openssl 1.0.1e (including) 1.0.1e (including)

References