CVE-2010-5298
Published at:
-
15-04-2014 12:38
Last modified:
-
29-08-2022 10:53
Total changes:
-
2
Description
Common Vulnerability Scoring System (CVSS)
High
Attack complexity
Network
Attack vector
Low
Availability
None
Confidentiality
Low
Integrity
-
Privileges required
-
Scope
-
User interaction
4.0
Base score
4.9
4.9
Exploitability score
Impact score
Verification logic
Reference
- [oss-security] 20140412 Use-after-free race condition,in OpenSSL's read buffer-Mailing List, Patch
- http://svnweb.freebsd.org/ports/head/security/openssl/files/patch-ssl-s3_pkt.c?revision=351191&view=markup
- http://ftp.openbsd.org/pub/OpenBSD/patches/5.5/common/004_openssl.patch.sig
- http://www.tedunangst.com/flak/post/analysis-of-openssl-freelist-reuse
- https://rt.openssl.org/Ticket/Display.html?id=3265&user=guest&pass=guest
- [5.5] 004: SECURITY FIX: April 12, 2014-Third Party Advisory
- https://rt.openssl.org/Ticket/Display.html?id=2167&user=guest&pass=guest
- 66801-Third Party Advisory, VDB Entry
- http://www.openssl.org/news/secadv_20140605.txt
- https://kb.bluecoat.com/index?page=content&id=SA80
- 20140605 Multiple Vulnerabilities in OpenSSL Affecting Cisco Products-Third Party Advisory
- http://www.blackberry.com/btsc/KB36051
- http://www-01.ibm.com/support/docview.wss?uid=swg21676035
- 59438-Not Applicable
- 59301-Not Applicable
- 59450-Not Applicable
- 59721-Not Applicable
- http://www-01.ibm.com/support/docview.wss?uid=swg21677695
- 59655-Not Applicable
- http://www.huawei.com/en/security/psirt/security-bulletins/security-advisories/hw-345106.htm
- 59162-Not Applicable
- http://www-01.ibm.com/support/docview.wss?uid=swg21676655
- 58939-Not Applicable
- 59666-Not Applicable
- http://www-01.ibm.com/support/docview.wss?uid=swg21677828
- 59490-Not Applicable
- http://www-01.ibm.com/support/docview.wss?uid=swg21676062
- https://kc.mcafee.com/corporate/index?page=content&id=SB10075
- http://www-01.ibm.com/support/docview.wss?uid=swg21676419
- http://www-01.ibm.com/support/docview.wss?uid=swg21678167
- http://www-01.ibm.com/support/docview.wss?uid=swg21673137
- http://www-01.ibm.com/support/docview.wss?uid=swg21677527
- 59669-Not Applicable
- 59413-Not Applicable
- 59300-Not Applicable
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- http://www.fortiguard.com/advisory/FG-IR-14-018/
- 59342-Not Applicable
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities-Mailing List, Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- MDVSA-2015:062-Broken Link
- HPSBMU03055-Mailing List, Third Party Advisory
- HPSBHF03052-Mailing List, Third Party Advisory
- HPSBMU03051-Mailing List, Third Party Advisory
- HPSBMU03074-Mailing List, Third Party Advisory
- HPSBGN03068-Mailing List, Third Party Advisory
- HPSBMU03057-Mailing List, Third Party Advisory
- HPSBMU03076-Mailing List, Third Party Advisory
- HPSBMU03056-Mailing List, Third Party Advisory
- HPSBMU03062-Mailing List, Third Party Advisory
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05301946
- SUSE-SU-2015:0743-Mailing List, Third Party Advisory
- https://www.novell.com/support/kb/doc.php?id=7015271
- http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5095757
- http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5095756
- http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5095755
- http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5095754
- http://www-01.ibm.com/support/docview.wss?uid=swg21683332
- http://www-01.ibm.com/support/docview.wss?uid=swg21677836
- http://www-01.ibm.com/support/docview.wss?uid=swg21676889
- http://www-01.ibm.com/support/docview.wss?uid=swg21676879
- http://www-01.ibm.com/support/docview.wss?uid=swg21676529
- http://www.vmware.com/security/advisories/VMSA-2014-0006.html
- MDVSA-2014:090-Broken Link
- http://www.ibm.com/support/docview.wss?uid=swg24037783
- http://www.ibm.com/support/docview.wss?uid=swg21676356
- http://support.citrix.com/article/CTX140876
- GLSA-201407-05-Third Party Advisory
- 59440-Not Applicable
- 59437-Not Applicable
- 59287-Not Applicable
- 58977-Not Applicable
- 58713-Not Applicable
- 58337-Not Applicable
- FEDORA-2014-9308-Mailing List, Third Party Advisory
- FEDORA-2014-9301-Mailing List, Third Party Advisory
- http://kb.juniper.net/InfoCenter/index?page=content&id=KB29195
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10629
- http://advisories.mageia.org/MGASA-2014-0187.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities-Third Party Advisory, VDB Entry
Keywords