Unrated severityNVD Advisory· Published May 29, 2008· Updated Apr 23, 2026
CVE-2008-1672
CVE-2008-1672
Description
OpenSSL 0.9.8f and 0.9.8g allows remote attackers to cause a denial of service (crash) via a TLS handshake that omits the Server Key Exchange message and uses "particular cipher suites," which triggers a NULL pointer dereference.
Affected products
3cpe:2.3:a:openssl:openssl:0.9.8f:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:openssl:openssl:0.9.8f:*:*:*:*:*:*:*
- cpe:2.3:a:openssl:openssl:0.9.8g:*:*:*:*:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:8.04:*:*:*:-:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
23- www.securityfocus.com/bid/29405nvdPatchThird Party AdvisoryVDB Entry
- cert.fi/haavoittuvuudet/2008/advisory-openssl.htmlnvdThird Party Advisory
- secunia.com/advisories/30405nvdThird Party Advisory
- secunia.com/advisories/30460nvdThird Party Advisory
- secunia.com/advisories/30825nvdThird Party Advisory
- secunia.com/advisories/30852nvdThird Party Advisory
- secunia.com/advisories/30868nvdThird Party Advisory
- secunia.com/advisories/31228nvdThird Party Advisory
- secunia.com/advisories/31288nvdThird Party Advisory
- security.gentoo.org/glsa/glsa-200806-08.xmlnvdThird Party Advisory
- slackware.com/security/viewer.phpnvdThird Party Advisory
- sourceforge.net/project/shownotes.phpnvdThird Party Advisory
- support.nortel.com/go/main.jspnvdThird Party Advisory
- www.kb.cert.org/vuls/id/520586nvdThird Party AdvisoryUS Government Resource
- www.mandriva.com/security/advisoriesnvdThird Party Advisory
- www.openssl.org/news/secadv_20080528.txtnvdVendor Advisory
- www.securityfocus.com/archive/1/492932/100/0/threadednvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/idnvdThird Party AdvisoryVDB Entry
- www.ubuntu.com/usn/usn-620-1nvdThird Party Advisory
- www.vupen.com/english/advisories/2008/1680nvdPermissions RequiredThird Party Advisory
- www.vupen.com/english/advisories/2008/1937/referencesnvdPermissions RequiredThird Party Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/42667nvdThird Party AdvisoryVDB Entry
- www.redhat.com/archives/fedora-package-announce/2008-May/msg01029.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.