CVE-2014-0195

Description

The dtls1_reassemble_fragment function in d1_both.c in OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h does not properly validate fragment lengths in DTLS ClientHello messages, which allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow and application crash) via a long non-initial fragment.

Risk Information

Base Score
8.1
MODERATE
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
92.418

Associated Vulnerability

VulnerabilityOS Platform
Multiple vulnerabilities fixed in OpenSSL (x64) 0.9.8zaWindows
Multiple vulnerabilities fixed in OpenSSL (x64) 1.0.0mWindows
Multiple vulnerabilities fixed in OpenSSL (x64) 1.0.1hWindows
Multiple vulnerabilities are fixed in OS X Mavericks 10.9.5 UpdateMac
Multiple vulnerabilities are fixed in OS X Mavericks 10.9.5 Update (Combo)Mac
Secure Socket Layer (SSL) cryptographic library and tools (USN-3087-2) libssl1.0.0_1.0.1f-1ubuntu2.21_i386.debLinux
Secure Socket Layer (SSL) cryptographic library and tools (USN-3628-1) libssl1.0.0_1.0.1f-1ubuntu2.25_amd64.debLinux
Secure Socket Layer (SSL) cryptographic library and tools (USN-3628-1) libssl1.0.0_1.0.1f-1ubuntu2.25_i386.debLinux
Multiple Vulnerabilities in OpenSSL Affecting Cisco Products For Cisco IOSNCM
Buffer Copy without Checking Size of Input (Classic Buffer Overflow) Vulnerability (CVE-2014-0195)NCM

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-1706090Security Update for Cisco IOS Amsterdam-17.2.1r
PATCH-600222OS X Mavericks 10.9.5 Update
PATCH-600223OS X Mavericks 10.9.5 Update (Combo)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234