ID:374 - Exploit for Integer overflow in OpenSSL - CVE-2003-0543

 
Main Vulnerability Database Exploits ID:374 - Exploit for Integer overflow in OpenSSL - CVE-2003-0543

ID:374 - Exploit for Integer overflow in OpenSSL - CVE-2003-0543

Published: March 18, 2020


Vulnerability identifier: #VU249
Vulnerability risk: Medium
CVE-ID: CVE-2003-0543
CWE-ID: CWE-190
Exploitation vector: Remote access
Vulnerable software:
OpenSSL

Link to public exploit:


Vulnerability description

The vulnerability allows a remote attacker to cause a denial of service.

The vulnerability exists due to an integer overflow in OpenSSL 0.9.6 and 0.9.7. A remote unauthenticated attacker can cause a denial of service via an SSL client certificate with certain ASN.1 tag values.

Successful exploitation of this vulnerability may result in cause a denial of service.

Remediation

Upgrade your version to OpenSSL 0.9.7c or OpenSSL 0.9.6k.