OpenSSL Vulnerability in Multiple Versions Leading to DoS Attack
CVE-2004-0079
7.5HIGH
Key Information:
- Vendor
Cisco
- Vendor
- CVE Published:
- 23 November 2004
What is CVE-2004-0079?
The vulnerability in OpenSSL allows remote attackers to craft a malicious SSL/TLS handshake request that triggers a null dereference in the do_change_cipher_spec function, leading to a denial of service by crashing the application. This affects multiple versions of OpenSSL and underscores the importance of timely updates to prevent potential attacks.