Two vulnerabilities have been identified in OpenSSL, which could be exploited by attackers to cause a denial of service.
The first issue is caused by a double-free error within the handling of server name extension data when the application has been compiled using the non-default TLS server name extensions, which could be exploited by remote attackers to crash an affected application via a specially crafted Client Hello packet.
The second vulnerability is caused by a NULL pointer dereference error when the Server Key exchange message is omitted from a TLS handshake, which could be exploited to crash a vulnerable client when connected to a malicious server with particular cipher suites.
Credits
Vulnerabilities reported by Ossi Herrala and Jukka Taimisto (CROSS project / Codenomicon).
ChangeLog
2008-05-28 : Initial release
Vulnerability Management
Subscribe to FrSIRT VNS and receive real-time e-mail and SMS alerts when new vulnerabilities, exploits, or patches relevant to your systems and network configurations are available.
Feedback
If you have additional information or corrections for this security advisory please submit them via our contact form or by email to updates@frsirt.com.