Информационная безопасность
[RU] switch to
English Version



CVECVE-2008-1531
СтатусCandidate
Описаниеlighttpd 1.4.19 and earlier allows remote attackers to cause a denial of service (active SSL connection loss) by triggering an SSL error, such as disconnecting before a download has finished, which causes all active SSL connections to be lost.
ВажностьMedium
CVSS score4,3
CVSS vector(AV:N/AC:M/Au:N/C:N/I:N/A:P)
PhaseAssigned (11.10.2011)
NVD:http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-1531
ReferencesBID : 28489
 CONFIRM : http://trac.lighttpd.net/trac/changeset/2136
 CONFIRM : http://trac.lighttpd.net/trac/ticket/285#comment:18
 CONFIRM : https://bugs.gentoo.org/show_bug.cgi?id=214892
 OSVDB : 43788
SecurityVulns:DoS через SSL против lighthttpd

О сайте | Условия использования
© SecurityVulns, 3APA3A, Владимир Дубровин
Нижний Новгород

 
 



Rating@Mail.ru
test server