Vulnerability Details CVE-2016-8610
A denial of service flaw was found in OpenSSL 0.9.8, 1.0.1, 1.0.2 through 1.0.2h, and 1.1.0 in the way the TLS/SSL protocol defined processing of ALERT packets during a connection handshake. A remote attacker could use this flaw to make a TLS/SSL server consume an excessive amount of CPU and fail to accept connections from other clients.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.692
EPSS Ranking 98.5%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2016-8610
-
cpe:2.3:a:netapp:clustered_data_ontap_antivirus_connector:-
-
cpe:2.3:a:netapp:data_ontap:-
-
cpe:2.3:a:netapp:data_ontap_edge:-
-
cpe:2.3:a:netapp:e-series_santricity_os_controller:11.0
-
cpe:2.3:a:netapp:e-series_santricity_os_controller:11.0.0
-
cpe:2.3:a:netapp:e-series_santricity_os_controller:11.20
-
cpe:2.3:a:netapp:e-series_santricity_os_controller:11.25
-
cpe:2.3:a:netapp:e-series_santricity_os_controller:11.30
-
cpe:2.3:a:netapp:e-series_santricity_os_controller:11.30.5r3
-
cpe:2.3:a:netapp:e-series_santricity_os_controller:11.40
-
cpe:2.3:a:netapp:host_agent:-
-
cpe:2.3:a:netapp:oncommand_balance:-
-
cpe:2.3:a:netapp:oncommand_unified_manager:-
-
cpe:2.3:a:netapp:oncommand_workflow_automation:-
-
cpe:2.3:a:netapp:ontap_select_deploy:-
-
cpe:2.3:a:netapp:service_processor:-
-
cpe:2.3:a:netapp:smi-s_provider:-
-
cpe:2.3:a:netapp:snapcenter_server:-
-
cpe:2.3:a:netapp:snapdrive:-
-
cpe:2.3:a:netapp:storagegrid:-
-
cpe:2.3:a:netapp:storagegrid_webscale:-
-
cpe:2.3:a:openssl:openssl:0.9.8
-
cpe:2.3:a:openssl:openssl:1.0.1
-
cpe:2.3:a:openssl:openssl:1.0.2
-
cpe:2.3:a:openssl:openssl:1.0.2a
-
cpe:2.3:a:openssl:openssl:1.0.2b
-
cpe:2.3:a:openssl:openssl:1.0.2c
-
cpe:2.3:a:openssl:openssl:1.0.2d
-
cpe:2.3:a:openssl:openssl:1.0.2e
-
cpe:2.3:a:openssl:openssl:1.0.2f
-
cpe:2.3:a:openssl:openssl:1.0.2g
-
cpe:2.3:a:openssl:openssl:1.0.2h
-
cpe:2.3:a:openssl:openssl:1.1.0
-
cpe:2.3:a:oracle:adaptive_access_manager:11.1.2.3.0
-
cpe:2.3:a:oracle:application_testing_suite:13.3.0.1
-
cpe:2.3:a:oracle:communications_analytics:12.1.1
-
cpe:2.3:a:oracle:communications_ip_service_activator:7.3.4
-
cpe:2.3:a:oracle:communications_ip_service_activator:7.4.0
-
cpe:2.3:a:oracle:core_rdbms:11.2.0.4
-
cpe:2.3:a:oracle:core_rdbms:12.1.0.2
-
cpe:2.3:a:oracle:core_rdbms:12.2.0.1
-
cpe:2.3:a:oracle:core_rdbms:18c
-
cpe:2.3:a:oracle:core_rdbms:19c
-
cpe:2.3:a:oracle:enterprise_manager_ops_center:12.3.3
-
cpe:2.3:a:oracle:enterprise_manager_ops_center:12.4.0
-
cpe:2.3:a:oracle:goldengate_application_adapters:12.3.2.1.0
-
cpe:2.3:a:oracle:jd_edwards_enterpriseone_tools:9.2
-
cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.56
-
cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.57
-
cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.58
-
cpe:2.3:a:oracle:retail_predictive_application_server:15.0.3
-
cpe:2.3:a:oracle:retail_predictive_application_server:16.0.3
-
cpe:2.3:a:oracle:timesten_in-memory_database:-
-
cpe:2.3:a:oracle:timesten_in-memory_database:11.2.2.8.27
-
cpe:2.3:a:oracle:timesten_in-memory_database:11.2.2.8.49
-
cpe:2.3:a:oracle:timesten_in-memory_database:18.1.2.1.0
-
cpe:2.3:a:oracle:timesten_in-memory_database:18.1.3.1.0
-
cpe:2.3:a:oracle:weblogic_server:10.3.6.0.0
-
cpe:2.3:a:oracle:weblogic_server:12.1.3.0.0
-
cpe:2.3:a:oracle:weblogic_server:12.2.1.3.0
-
cpe:2.3:a:oracle:weblogic_server:12.2.1.4.0
-
cpe:2.3:a:redhat:jboss_enterprise_application_platform:6.0.0
-
cpe:2.3:a:redhat:jboss_enterprise_application_platform:6.4.0
-
cpe:2.3:h:fujitsu:m10-1:-
-
cpe:2.3:h:fujitsu:m10-4:-
-
cpe:2.3:h:fujitsu:m10-4s:-
-
cpe:2.3:h:fujitsu:m12-1:-
-
cpe:2.3:h:fujitsu:m12-2:-
-
cpe:2.3:h:fujitsu:m12-2s:-
-
cpe:2.3:h:netapp:cn1610:-
-
cpe:2.3:o:debian:debian_linux:8.0
-
cpe:2.3:o:fujitsu:m10-1_firmware:*
-
cpe:2.3:o:fujitsu:m10-1_firmware:-
-
cpe:2.3:o:fujitsu:m10-1_firmware:xcp
-
cpe:2.3:o:fujitsu:m10-1_firmware:xcp2280
-
cpe:2.3:o:fujitsu:m10-4_firmware:*
-
cpe:2.3:o:fujitsu:m10-4_firmware:-
-
cpe:2.3:o:fujitsu:m10-4_firmware:xcp
-
cpe:2.3:o:fujitsu:m10-4_firmware:xcp2280
-
cpe:2.3:o:fujitsu:m10-4s_firmware:*
-
cpe:2.3:o:fujitsu:m10-4s_firmware:-
-
cpe:2.3:o:fujitsu:m10-4s_firmware:xcp
-
cpe:2.3:o:fujitsu:m10-4s_firmware:xcp2280
-
cpe:2.3:o:fujitsu:m12-1_firmware:*
-
cpe:2.3:o:fujitsu:m12-1_firmware:-
-
cpe:2.3:o:fujitsu:m12-2_firmware:*
-
cpe:2.3:o:fujitsu:m12-2_firmware:-
-
cpe:2.3:o:fujitsu:m12-2s_firmware:*
-
cpe:2.3:o:fujitsu:m12-2s_firmware:-
-
cpe:2.3:o:netapp:clustered_data_ontap:-
-
cpe:2.3:o:netapp:cn1610_firmware:-
-
cpe:2.3:o:paloaltonetworks:pan-os:-
-
cpe:2.3:o:paloaltonetworks:pan-os:1.3
-
cpe:2.3:o:paloaltonetworks:pan-os:2.0
-
cpe:2.3:o:paloaltonetworks:pan-os:2.1
-
cpe:2.3:o:paloaltonetworks:pan-os:3.0
-
cpe:2.3:o:paloaltonetworks:pan-os:3.1
-
cpe:2.3:o:paloaltonetworks:pan-os:3.1.10
-
cpe:2.3:o:paloaltonetworks:pan-os:3.1.11
-
cpe:2.3:o:paloaltonetworks:pan-os:3.1.12
-
cpe:2.3:o:paloaltonetworks:pan-os:3.1.9
-
cpe:2.3:o:paloaltonetworks:pan-os:4.0.0
-
cpe:2.3:o:paloaltonetworks:pan-os:4.0.1
-
cpe:2.3:o:paloaltonetworks:pan-os:4.0.10
-
cpe:2.3:o:paloaltonetworks:pan-os:4.0.11
-
cpe:2.3:o:paloaltonetworks:pan-os:4.0.12
-
cpe:2.3:o:paloaltonetworks:pan-os:4.0.13
-
cpe:2.3:o:paloaltonetworks:pan-os:4.0.2
-
cpe:2.3:o:paloaltonetworks:pan-os:4.0.3
-
cpe:2.3:o:paloaltonetworks:pan-os:4.0.4
-
cpe:2.3:o:paloaltonetworks:pan-os:4.0.5
-
cpe:2.3:o:paloaltonetworks:pan-os:4.0.6
-
cpe:2.3:o:paloaltonetworks:pan-os:4.0.7
-
cpe:2.3:o:paloaltonetworks:pan-os:4.0.8
-
cpe:2.3:o:paloaltonetworks:pan-os:4.0.9
-
cpe:2.3:o:paloaltonetworks:pan-os:4.1.0
-
cpe:2.3:o:paloaltonetworks:pan-os:4.1.1
-
cpe:2.3:o:paloaltonetworks:pan-os:4.1.10
-
cpe:2.3:o:paloaltonetworks:pan-os:4.1.11
-
cpe:2.3:o:paloaltonetworks:pan-os:4.1.12
-
cpe:2.3:o:paloaltonetworks:pan-os:4.1.13
-
cpe:2.3:o:paloaltonetworks:pan-os:4.1.2
-
cpe:2.3:o:paloaltonetworks:pan-os:4.1.3
-
cpe:2.3:o:paloaltonetworks:pan-os:4.1.4
-
cpe:2.3:o:paloaltonetworks:pan-os:4.1.5
-
cpe:2.3:o:paloaltonetworks:pan-os:4.1.6
-
cpe:2.3:o:paloaltonetworks:pan-os:4.1.7
-
cpe:2.3:o:paloaltonetworks:pan-os:4.1.8
-
cpe:2.3:o:paloaltonetworks:pan-os:4.1.8-h3
-
cpe:2.3:o:paloaltonetworks:pan-os:4.1.9
-
cpe:2.3:o:paloaltonetworks:pan-os:5.0.0
-
cpe:2.3:o:paloaltonetworks:pan-os:5.0.0-h1
-
cpe:2.3:o:paloaltonetworks:pan-os:5.0.10
-
cpe:2.3:o:paloaltonetworks:pan-os:5.0.11
-
cpe:2.3:o:paloaltonetworks:pan-os:5.0.12
-
cpe:2.3:o:paloaltonetworks:pan-os:5.0.13
-
cpe:2.3:o:paloaltonetworks:pan-os:5.0.14
-
cpe:2.3:o:paloaltonetworks:pan-os:5.0.15
-
cpe:2.3:o:paloaltonetworks:pan-os:5.0.16
-
cpe:2.3:o:paloaltonetworks:pan-os:5.0.17
-
cpe:2.3:o:paloaltonetworks:pan-os:5.0.18
-
cpe:2.3:o:paloaltonetworks:pan-os:5.0.19
-
cpe:2.3:o:paloaltonetworks:pan-os:5.0.2
-
cpe:2.3:o:paloaltonetworks:pan-os:5.0.20
-
cpe:2.3:o:paloaltonetworks:pan-os:5.0.3
-
cpe:2.3:o:paloaltonetworks:pan-os:5.0.4
-
cpe:2.3:o:paloaltonetworks:pan-os:5.0.5
-
cpe:2.3:o:paloaltonetworks:pan-os:5.0.6
-
cpe:2.3:o:paloaltonetworks:pan-os:5.0.7
-
cpe:2.3:o:paloaltonetworks:pan-os:5.0.8
-
cpe:2.3:o:paloaltonetworks:pan-os:5.0.9
-
cpe:2.3:o:paloaltonetworks:pan-os:5.1
-
cpe:2.3:o:paloaltonetworks:pan-os:5.1.1
-
cpe:2.3:o:paloaltonetworks:pan-os:5.1.10
-
cpe:2.3:o:paloaltonetworks:pan-os:5.1.11
-
cpe:2.3:o:paloaltonetworks:pan-os:5.1.12
-
cpe:2.3:o:paloaltonetworks:pan-os:5.1.13
-
cpe:2.3:o:paloaltonetworks:pan-os:5.1.2
-
cpe:2.3:o:paloaltonetworks:pan-os:5.1.3
-
cpe:2.3:o:paloaltonetworks:pan-os:5.1.4
-
cpe:2.3:o:paloaltonetworks:pan-os:5.1.5
-
cpe:2.3:o:paloaltonetworks:pan-os:5.1.6
-
cpe:2.3:o:paloaltonetworks:pan-os:5.1.7
-
cpe:2.3:o:paloaltonetworks:pan-os:5.1.8
-
cpe:2.3:o:paloaltonetworks:pan-os:5.1.9
-
cpe:2.3:o:paloaltonetworks:pan-os:6.0
-
cpe:2.3:o:paloaltonetworks:pan-os:6.0.0
-
cpe:2.3:o:paloaltonetworks:pan-os:6.0.1
-
cpe:2.3:o:paloaltonetworks:pan-os:6.0.10
-
cpe:2.3:o:paloaltonetworks:pan-os:6.0.11
-
cpe:2.3:o:paloaltonetworks:pan-os:6.0.12
-
cpe:2.3:o:paloaltonetworks:pan-os:6.0.13
-
cpe:2.3:o:paloaltonetworks:pan-os:6.0.14
-
cpe:2.3:o:paloaltonetworks:pan-os:6.0.15
-
cpe:2.3:o:paloaltonetworks:pan-os:6.0.2
-
cpe:2.3:o:paloaltonetworks:pan-os:6.0.3
-
cpe:2.3:o:paloaltonetworks:pan-os:6.0.4
-
cpe:2.3:o:paloaltonetworks:pan-os:6.0.5
-
cpe:2.3:o:paloaltonetworks:pan-os:6.0.6
-
cpe:2.3:o:paloaltonetworks:pan-os:6.0.7
-
cpe:2.3:o:paloaltonetworks:pan-os:6.0.8
-
cpe:2.3:o:paloaltonetworks:pan-os:6.0.9
-
cpe:2.3:o:paloaltonetworks:pan-os:6.1.0
-
cpe:2.3:o:paloaltonetworks:pan-os:6.1.1
-
cpe:2.3:o:paloaltonetworks:pan-os:6.1.10
-
cpe:2.3:o:paloaltonetworks:pan-os:6.1.11
-
cpe:2.3:o:paloaltonetworks:pan-os:6.1.12
-
cpe:2.3:o:paloaltonetworks:pan-os:6.1.13
-
cpe:2.3:o:paloaltonetworks:pan-os:6.1.14
-
cpe:2.3:o:paloaltonetworks:pan-os:6.1.15
-
cpe:2.3:o:paloaltonetworks:pan-os:6.1.16
-
cpe:2.3:o:paloaltonetworks:pan-os:6.1.17
-
cpe:2.3:o:paloaltonetworks:pan-os:6.1.2
-
cpe:2.3:o:paloaltonetworks:pan-os:6.1.3
-
cpe:2.3:o:paloaltonetworks:pan-os:6.1.4
-
cpe:2.3:o:paloaltonetworks:pan-os:6.1.5
-
cpe:2.3:o:paloaltonetworks:pan-os:6.1.6
-
cpe:2.3:o:paloaltonetworks:pan-os:6.1.7
-
cpe:2.3:o:paloaltonetworks:pan-os:6.1.8
-
cpe:2.3:o:paloaltonetworks:pan-os:6.1.9
-
cpe:2.3:o:paloaltonetworks:pan-os:7.0.0
-
cpe:2.3:o:paloaltonetworks:pan-os:7.0.1
-
cpe:2.3:o:paloaltonetworks:pan-os:7.0.10
-
cpe:2.3:o:paloaltonetworks:pan-os:7.0.11
-
cpe:2.3:o:paloaltonetworks:pan-os:7.0.12
-
cpe:2.3:o:paloaltonetworks:pan-os:7.0.13
-
cpe:2.3:o:paloaltonetworks:pan-os:7.0.14
-
cpe:2.3:o:paloaltonetworks:pan-os:7.0.15
-
cpe:2.3:o:paloaltonetworks:pan-os:7.0.2
-
cpe:2.3:o:paloaltonetworks:pan-os:7.0.3
-
cpe:2.3:o:paloaltonetworks:pan-os:7.0.4
-
cpe:2.3:o:paloaltonetworks:pan-os:7.0.5
-
cpe:2.3:o:paloaltonetworks:pan-os:7.0.5-h2
-
cpe:2.3:o:paloaltonetworks:pan-os:7.0.6
-
cpe:2.3:o:paloaltonetworks:pan-os:7.0.7
-
cpe:2.3:o:paloaltonetworks:pan-os:7.0.8
-
cpe:2.3:o:paloaltonetworks:pan-os:7.0.9
-
cpe:2.3:o:paloaltonetworks:pan-os:7.1.0
-
cpe:2.3:o:paloaltonetworks:pan-os:7.1.1
-
cpe:2.3:o:paloaltonetworks:pan-os:7.1.10
-
cpe:2.3:o:paloaltonetworks:pan-os:7.1.2
-
cpe:2.3:o:paloaltonetworks:pan-os:7.1.3
-
cpe:2.3:o:paloaltonetworks:pan-os:7.1.4
-
cpe:2.3:o:paloaltonetworks:pan-os:7.1.4-h2
-
cpe:2.3:o:paloaltonetworks:pan-os:7.1.5
-
cpe:2.3:o:paloaltonetworks:pan-os:7.1.6
-
cpe:2.3:o:paloaltonetworks:pan-os:7.1.7
-
cpe:2.3:o:paloaltonetworks:pan-os:7.1.8
-
cpe:2.3:o:paloaltonetworks:pan-os:7.1.9
-
cpe:2.3:o:redhat:enterprise_linux:6.0
-
cpe:2.3:o:redhat:enterprise_linux:7.0
-
cpe:2.3:o:redhat:enterprise_linux_desktop:6.0
-
cpe:2.3:o:redhat:enterprise_linux_desktop:7.0
-
cpe:2.3:o:redhat:enterprise_linux_server:6.0
-
cpe:2.3:o:redhat:enterprise_linux_server:7.0
-
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.3
-
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4
-
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6
-
cpe:2.3:o:redhat:enterprise_linux_server_eus:7.3
-
cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4
-
cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5
-
cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6
-
cpe:2.3:o:redhat:enterprise_linux_server_tus:7.3
-
cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6
-
cpe:2.3:o:redhat:enterprise_linux_workstation:6.0
-
cpe:2.3:o:redhat:enterprise_linux_workstation:7.0