Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2008-0891

Double free vulnerability in OpenSSL 0.9.8f and 0.9.8g, when the TLS server name extensions are enabled, allows remote attackers to cause a denial of service (crash) via a malformed Client Hello packet. NOTE: some of these details are obtained from third party information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.14
EPSS Ranking 94.1%
CVSS Severity
CVSS v2 Score 4.3
References
Products affected by CVE-2008-0891
  • Openssl » Openssl » Version: 0.9.8f
    cpe:2.3:a:openssl:openssl:0.9.8f
  • Openssl » Openssl » Version: 0.9.8g
    cpe:2.3:a:openssl:openssl:0.9.8g


Contact Us

Shodan ® - All rights reserved