Unrated severityNVD Advisory· Published Sep 28, 2006· Updated Apr 23, 2026
CVE-2006-4343
CVE-2006-4343
Description
The get_server_hello function in the SSLv2 client code in OpenSSL 0.9.7 before 0.9.7l, 0.9.8 before 0.9.8d, and earlier versions allows remote servers to cause a denial of service (client crash) via unknown vectors that trigger a null pointer dereference.
Affected products
20cpe:2.3:a:openssl:openssl:0.9.7:*:*:*:*:*:*:*+ 15 more
- cpe:2.3:a:openssl:openssl:0.9.7:*:*:*:*:*:*:*
- cpe:2.3:a:openssl:openssl:0.9.7a:*:*:*:*:*:*:*
- cpe:2.3:a:openssl:openssl:0.9.7b:*:*:*:*:*:*:*
- cpe:2.3:a:openssl:openssl:0.9.7c:*:*:*:*:*:*:*
- cpe:2.3:a:openssl:openssl:0.9.7d:*:*:*:*:*:*:*
- cpe:2.3:a:openssl:openssl:0.9.7e:*:*:*:*:*:*:*
- cpe:2.3:a:openssl:openssl:0.9.7f:*:*:*:*:*:*:*
- cpe:2.3:a:openssl:openssl:0.9.7g:*:*:*:*:*:*:*
- cpe:2.3:a:openssl:openssl:0.9.7h:*:*:*:*:*:*:*
- cpe:2.3:a:openssl:openssl:0.9.7i:*:*:*:*:*:*:*
- cpe:2.3:a:openssl:openssl:0.9.7j:*:*:*:*:*:*:*
- cpe:2.3:a:openssl:openssl:0.9.7k:*:*:*:*:*:*:*
- cpe:2.3:a:openssl:openssl:0.9.8:*:*:*:*:*:*:*
- cpe:2.3:a:openssl:openssl:0.9.8a:*:*:*:*:*:*:*
- cpe:2.3:a:openssl:openssl:0.9.8b:*:*:*:*:*:*:*
- cpe:2.3:a:openssl:openssl:0.9.8c:*:*:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:3.1:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:5.04:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:canonical:ubuntu_linux:5.04:*:*:*:*:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:5.10:*:*:*:*:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:6.06:*:*:*:lts:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
131- www.kb.cert.org/vuls/id/386964nvdPatchThird Party AdvisoryUS Government Resource
- www.openssl.org/news/secadv_20060928.txtnvdPatchThird Party Advisory
- www.securityfocus.com/bid/20246nvdPatchThird Party AdvisoryVDB Entry
- ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2008-007.txt.ascnvdThird Party Advisory
- patches.sgi.com/support/free/security/advisories/20061001-01-P.ascnvdThird Party Advisory
- docs.info.apple.com/article.htmlnvdThird Party Advisory
- lists.apple.com/archives/security-announce/2006/Nov/msg00001.htmlnvdMailing ListThird Party Advisory
- lists.grok.org.uk/pipermail/full-disclosure/2006-September/049715.htmlnvdMailing ListThird Party Advisory
- lists.vmware.com/pipermail/security-announce/2008/000008.htmlnvdMailing ListThird Party Advisory
- marc.infonvdMailing ListThird Party Advisory
- openbsd.org/errata.htmlnvdThird Party Advisory
- openvpn.net/changelog.htmlnvdThird Party Advisory
- secunia.com/advisories/22094nvdThird Party Advisory
- secunia.com/advisories/22116nvdThird Party Advisory
- secunia.com/advisories/22130nvdThird Party Advisory
- secunia.com/advisories/22165nvdThird Party Advisory
- secunia.com/advisories/22166nvdThird Party Advisory
- secunia.com/advisories/22172nvdThird Party Advisory
- secunia.com/advisories/22186nvdThird Party Advisory
- secunia.com/advisories/22193nvdThird Party Advisory
- secunia.com/advisories/22207nvdThird Party Advisory
- secunia.com/advisories/22212nvdThird Party Advisory
- secunia.com/advisories/22216nvdThird Party Advisory
- secunia.com/advisories/22220nvdThird Party Advisory
- secunia.com/advisories/22240nvdThird Party Advisory
- secunia.com/advisories/22259nvdThird Party Advisory
- secunia.com/advisories/22260nvdThird Party Advisory
- secunia.com/advisories/22284nvdThird Party Advisory
- secunia.com/advisories/22298nvdThird Party Advisory
- secunia.com/advisories/22330nvdThird Party Advisory
- secunia.com/advisories/22385nvdThird Party Advisory
- secunia.com/advisories/22460nvdThird Party Advisory
- secunia.com/advisories/22487nvdThird Party Advisory
- secunia.com/advisories/22500nvdThird Party Advisory
- secunia.com/advisories/22544nvdThird Party Advisory
- secunia.com/advisories/22626nvdThird Party Advisory
- secunia.com/advisories/22758nvdThird Party Advisory
- secunia.com/advisories/22772nvdThird Party Advisory
- secunia.com/advisories/22791nvdThird Party Advisory
- secunia.com/advisories/22799nvdThird Party Advisory
- secunia.com/advisories/23038nvdThird Party Advisory
- secunia.com/advisories/23155nvdThird Party Advisory
- secunia.com/advisories/23280nvdThird Party Advisory
- secunia.com/advisories/23309nvdThird Party Advisory
- secunia.com/advisories/23340nvdThird Party Advisory
- secunia.com/advisories/23680nvdThird Party Advisory
- secunia.com/advisories/23794nvdThird Party Advisory
- secunia.com/advisories/23915nvdThird Party Advisory
- secunia.com/advisories/24950nvdThird Party Advisory
- secunia.com/advisories/25420nvdThird Party Advisory
- secunia.com/advisories/25889nvdThird Party Advisory
- secunia.com/advisories/26329nvdThird Party Advisory
- secunia.com/advisories/30124nvdThird Party Advisory
- secunia.com/advisories/31492nvdThird Party Advisory
- security.freebsd.org/advisories/FreeBSD-SA-06:23.openssl.ascnvdThird Party Advisory
- security.gentoo.org/glsa/glsa-200610-11.xmlnvdThird Party Advisory
- securitytracker.com/idnvdThird Party AdvisoryVDB Entry
- securitytracker.com/idnvdThird Party AdvisoryVDB Entry
- slackware.com/security/viewer.phpnvdMailing ListThird Party Advisory
- support.avaya.com/elmodocs2/security/ASA-2006-220.htmnvdThird Party Advisory
- support.avaya.com/elmodocs2/security/ASA-2006-260.htmnvdThird Party Advisory
- www.cisco.com/en/US/products/hw/contnetw/ps4162/tsd_products_security_response09186a008077af1b.htmlnvdThird Party Advisory
- www.cisco.com/warp/public/707/cisco-sr-20061108-openssl.shtmlnvdThird Party Advisory
- www.debian.org/security/2006/dsa-1185nvdThird Party Advisory
- www.debian.org/security/2006/dsa-1195nvdThird Party Advisory
- www.gentoo.org/security/en/glsa/glsa-200612-11.xmlnvdThird Party Advisory
- www.mandriva.com/security/advisoriesnvdThird Party Advisory
- www.mandriva.com/security/advisoriesnvdThird Party Advisory
- www.openpkg.org/security/advisories/OpenPKG-SA-2006.021-openssl.htmlnvdThird Party Advisory
- www.oracle.com/technetwork/topics/security/cpujan2007-101493.htmlnvdThird Party Advisory
- www.redhat.com/support/errata/RHSA-2006-0695.htmlnvdThird Party Advisory
- www.redhat.com/support/errata/RHSA-2008-0629.htmlnvdThird Party Advisory
- www.securityfocus.com/bid/22083nvdThird Party AdvisoryVDB Entry
- www.securityfocus.com/bid/28276nvdThird Party AdvisoryVDB Entry
- www.serv-u.com/releasenotes/nvdThird Party Advisory
- www.ubuntu.com/usn/usn-353-1nvdThird Party Advisory
- www.us-cert.gov/cas/techalerts/TA06-333A.htmlnvdThird Party AdvisoryUS Government Resource
- www.vmware.com/security/advisories/VMSA-2008-0005.htmlnvdThird Party Advisory
- www.vmware.com/support/ace2/doc/releasenotes_ace2.htmlnvdThird Party Advisory
- www.vmware.com/support/esx2/doc/esx-202-200612-patch.htmlnvdThird Party Advisory
- www.vmware.com/support/esx21/doc/esx-213-200612-patch.htmlnvdThird Party Advisory
- www.vmware.com/support/esx25/doc/esx-253-200612-patch.htmlnvdThird Party Advisory
- www.vmware.com/support/esx25/doc/esx-254-200612-patch.htmlnvdThird Party Advisory
- www.vmware.com/support/player/doc/releasenotes_player.htmlnvdThird Party Advisory
- www.vmware.com/support/player2/doc/releasenotes_player2.htmlnvdThird Party Advisory
- www.vmware.com/support/server/doc/releasenotes_server.htmlnvdThird Party Advisory
- www.vmware.com/support/vi3/doc/esx-3069097-patch.htmlnvdThird Party Advisory
- www.vmware.com/support/vi3/doc/esx-9986131-patch.htmlnvdThird Party Advisory
- www.vmware.com/support/ws55/doc/releasenotes_ws55.htmlnvdThird Party Advisory
- www.vmware.com/support/ws6/doc/releasenotes_ws6.htmlnvdThird Party Advisory
- www.vupen.com/english/advisories/2006/3820nvdPermissions RequiredThird Party Advisory
- www.vupen.com/english/advisories/2006/3860nvdPermissions RequiredThird Party Advisory
- www.vupen.com/english/advisories/2006/3869nvdPermissions RequiredThird Party Advisory
- www.vupen.com/english/advisories/2006/3902nvdPermissions RequiredThird Party Advisory
- www.vupen.com/english/advisories/2006/3936nvdPermissions RequiredThird Party Advisory
- www.vupen.com/english/advisories/2006/4036nvdPermissions RequiredThird Party Advisory
- www.vupen.com/english/advisories/2006/4264nvdPermissions RequiredThird Party Advisory
- www.vupen.com/english/advisories/2006/4401nvdPermissions RequiredThird Party Advisory
- www.vupen.com/english/advisories/2006/4417nvdPermissions RequiredThird Party Advisory
- www.vupen.com/english/advisories/2006/4443nvdPermissions RequiredThird Party Advisory
- www.vupen.com/english/advisories/2006/4750nvdPermissions RequiredThird Party Advisory
- www.vupen.com/english/advisories/2007/0343nvdPermissions RequiredThird Party Advisory
- www.vupen.com/english/advisories/2007/1401nvdPermissions RequiredThird Party Advisory
- www.vupen.com/english/advisories/2007/1973nvdPermissions RequiredThird Party Advisory
- www.vupen.com/english/advisories/2007/2783nvdPermissions RequiredThird Party Advisory
- www.vupen.com/english/advisories/2008/0905/referencesnvdPermissions RequiredThird Party Advisory
- www.xerox.com/downloads/usa/en/c/cert_ESSNetwork_XRX07001_v1.pdfnvdThird Party Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/29240nvdThird Party AdvisoryVDB Entry
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10207nvdThird Party Advisory
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4356nvdThird Party Advisory
- www.exploit-db.com/exploits/4773nvdThird Party AdvisoryVDB Entry
- h20000.www2.hp.com/bizsupport/TechSupport/Document.jspnvdBroken Link
- issues.rpath.com/browse/RPL-613nvdBroken Link
- itrc.hp.com/service/cki/docDisplay.donvdBroken Link
- itrc.hp.com/service/cki/docDisplay.donvdBroken Link
- kolab.org/security/kolab-vendor-notice-11.txtnvdBroken Link
- sourceforge.net/project/shownotes.phpnvdBroken Link
- sunsolve.sun.com/search/document.donvdBroken Link
- sunsolve.sun.com/search/document.donvdBroken Link
- sunsolve.sun.com/search/document.donvdBroken Link
- www.ingate.com/relnote-452.phpnvdBroken Link
- www.mandriva.com/security/advisoriesnvdBroken Link
- www.novell.com/linux/security/advisories/2006_24_sr.htmlnvdBroken Link
- www.novell.com/linux/security/advisories/2006_58_openssl.htmlnvdBroken Link
- www.osvdb.org/29263nvdBroken Link
- www.trustix.org/errata/2006/0054nvdBroken Link
- www2.itrc.hp.com/service/cki/docDisplay.donvdBroken Link
- www.securityfocus.com/archive/1/447318/100/0/threadednvd
- www.securityfocus.com/archive/1/447393/100/0/threadednvd
- www.securityfocus.com/archive/1/456546/100/200/threadednvd
- www.securityfocus.com/archive/1/489739/100/0/threadednvd
News mentions
0No linked articles in our index yet.