VYPR
Unrated severityNVD Advisory· Published Mar 23, 2006· Updated Apr 16, 2026

CVE-2006-0998

CVE-2006-0998

Description

The SSL server implementation in NILE.NLM in Novell NetWare 6.5 and Novell Open Enterprise Server (OES) sometimes selects a weak cipher instead of an available stronger cipher, which makes it easier for remote attackers to sniff and decrypt an SSL protected session.

Affected products

8
  • Novell/Netware7 versions
    cpe:2.3:o:novell:netware:6.5:*:*:*:*:*:*:*+ 6 more
    • cpe:2.3:o:novell:netware:6.5:*:*:*:*:*:*:*
    • cpe:2.3:o:novell:netware:6.5:sp1:*:*:*:*:*:*
    • cpe:2.3:o:novell:netware:6.5:sp1.1a:*:*:*:*:*:*
    • cpe:2.3:o:novell:netware:6.5:sp1.1b:*:*:*:*:*:*
    • cpe:2.3:o:novell:netware:6.5:sp2:*:*:*:*:*:*
    • cpe:2.3:o:novell:netware:6.5:sp3:*:*:*:*:*:*
    • cpe:2.3:o:novell:netware:6.5:sp4:*:*:*:*:*:*
  • cpe:2.3:o:novell:open_enterprise_server:*:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

9

News mentions

0

No linked articles in our index yet.