CVE Vulnerabilities

CVE-2014-3505

Published: Aug 13, 2014 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
5 MODERATE
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Double free vulnerability in d1_both.c in the DTLS implementation in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i allows remote attackers to cause a denial of service (application crash) via crafted DTLS packets that trigger an error condition.

Affected Software

NameVendorStart VersionEnd Version
OpensslOpenssl0.9.8 (including)0.9.8 (including)
OpensslOpenssl0.9.8a (including)0.9.8a (including)
OpensslOpenssl0.9.8b (including)0.9.8b (including)
OpensslOpenssl0.9.8c (including)0.9.8c (including)
OpensslOpenssl0.9.8d (including)0.9.8d (including)
OpensslOpenssl0.9.8e (including)0.9.8e (including)
OpensslOpenssl0.9.8f (including)0.9.8f (including)
OpensslOpenssl0.9.8g (including)0.9.8g (including)
OpensslOpenssl0.9.8h (including)0.9.8h (including)
OpensslOpenssl0.9.8i (including)0.9.8i (including)
OpensslOpenssl0.9.8j (including)0.9.8j (including)
OpensslOpenssl0.9.8k (including)0.9.8k (including)
OpensslOpenssl0.9.8l (including)0.9.8l (including)
OpensslOpenssl0.9.8m (including)0.9.8m (including)
OpensslOpenssl0.9.8m-beta1 (including)0.9.8m-beta1 (including)
OpensslOpenssl0.9.8n (including)0.9.8n (including)
OpensslOpenssl0.9.8o (including)0.9.8o (including)
OpensslOpenssl0.9.8p (including)0.9.8p (including)
OpensslOpenssl0.9.8q (including)0.9.8q (including)
OpensslOpenssl0.9.8r (including)0.9.8r (including)
OpensslOpenssl0.9.8s (including)0.9.8s (including)
OpensslOpenssl0.9.8t (including)0.9.8t (including)
OpensslOpenssl0.9.8u (including)0.9.8u (including)
OpensslOpenssl0.9.8v (including)0.9.8v (including)
OpensslOpenssl0.9.8w (including)0.9.8w (including)
OpensslOpenssl0.9.8x (including)0.9.8x (including)
OpensslOpenssl0.9.8y (including)0.9.8y (including)
OpensslOpenssl0.9.8za (including)0.9.8za (including)
OpensslOpenssl1.0.0 (including)1.0.0 (including)
OpensslOpenssl1.0.0-beta1 (including)1.0.0-beta1 (including)
OpensslOpenssl1.0.0-beta2 (including)1.0.0-beta2 (including)
OpensslOpenssl1.0.0-beta3 (including)1.0.0-beta3 (including)
OpensslOpenssl1.0.0-beta4 (including)1.0.0-beta4 (including)
OpensslOpenssl1.0.0-beta5 (including)1.0.0-beta5 (including)
OpensslOpenssl1.0.0a (including)1.0.0a (including)
OpensslOpenssl1.0.0b (including)1.0.0b (including)
OpensslOpenssl1.0.0c (including)1.0.0c (including)
OpensslOpenssl1.0.0d (including)1.0.0d (including)
OpensslOpenssl1.0.0e (including)1.0.0e (including)
OpensslOpenssl1.0.0f (including)1.0.0f (including)
OpensslOpenssl1.0.0g (including)1.0.0g (including)
OpensslOpenssl1.0.0h (including)1.0.0h (including)
OpensslOpenssl1.0.0i (including)1.0.0i (including)
OpensslOpenssl1.0.0j (including)1.0.0j (including)
OpensslOpenssl1.0.0k (including)1.0.0k (including)
OpensslOpenssl1.0.0l (including)1.0.0l (including)
OpensslOpenssl1.0.0m (including)1.0.0m (including)
OpensslOpenssl1.0.1 (including)1.0.1 (including)
OpensslOpenssl1.0.1-beta1 (including)1.0.1-beta1 (including)
OpensslOpenssl1.0.1-beta2 (including)1.0.1-beta2 (including)
OpensslOpenssl1.0.1-beta3 (including)1.0.1-beta3 (including)
OpensslOpenssl1.0.1a (including)1.0.1a (including)
OpensslOpenssl1.0.1b (including)1.0.1b (including)
OpensslOpenssl1.0.1c (including)1.0.1c (including)
OpensslOpenssl1.0.1d (including)1.0.1d (including)
OpensslOpenssl1.0.1e (including)1.0.1e (including)
OpensslOpenssl1.0.1f (including)1.0.1f (including)
OpensslOpenssl1.0.1g (including)1.0.1g (including)
OpensslOpenssl1.0.1h (including)1.0.1h (including)
Red Hat Enterprise Linux 5RedHatopenssl-0:0.9.8e-27.el5_10.4*
Red Hat Enterprise Linux 6RedHatopenssl-0:1.0.1e-16.el6_5.15*
Red Hat Enterprise Linux 7RedHatopenssl-1:1.0.1e-34.el7_0.4*
Red Hat JBoss Enterprise Application Platform 6.3RedHatopenssl*
Red Hat JBoss Web Server 2.1RedHatopenssl*
Red Hat Storage 2.1RedHatopenssl-0:1.0.1e-16.el6_5.15*
OpensslUbuntuartful*
OpensslUbuntubionic*
OpensslUbuntucosmic*
OpensslUbuntudevel*
OpensslUbuntudisco*
OpensslUbuntuesm-infra-legacy/trusty*
OpensslUbuntuesm-infra/bionic*
OpensslUbuntuesm-infra/xenial*
OpensslUbuntulucid*
OpensslUbuntuprecise*
OpensslUbuntutrusty*
OpensslUbuntutrusty/esm*
OpensslUbuntuupstream*
OpensslUbuntuutopic*
OpensslUbuntuvivid*
OpensslUbuntuvivid/stable-phone-overlay*
OpensslUbuntuvivid/ubuntu-core*
OpensslUbuntuwily*
OpensslUbuntuxenial*
OpensslUbuntuyakkety*
OpensslUbuntuzesty*
Openssl098Ubuntuprecise*
Openssl098Ubuntutrusty*
Openssl098Ubuntuupstream*
Openssl098Ubuntuutopic*
Openssl098Ubuntuvivid*

References