OpenSSL DTLS Memory Exhaustion Vulnerability
Publish Date: 21 Juli 2015
Schweregrad:: Mittel
Hinweisdatum: 21 Juli 2015
Beschreibung
d1_both.c in the DTLS implementation in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i allows remote attackers to cause a denial of service (memory consumption) via crafted DTLS handshake messages that trigger memory allocations corresponding to large length values.
Trend Micro Lösungen
Apply associated Trend Micro DPI Rules.
Lösungen
Trend Micro Deep Security DPI Rule Number: 1006213