CVE-2011-4577
Publication date 5 January 2012
Last updated 24 July 2024
Ubuntu priority
Description
OpenSSL before 0.9.8s and 1.x before 1.0.0f, when RFC 3779 support is enabled, allows remote attackers to cause a denial of service (assertion failure) via an X.509 certificate containing certificate-extension data associated with (1) IP address blocks or (2) Autonomous System (AS) identifiers.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| openssl | ||
| openssl098 | ||
Patch details
| Package | Patch details |
|---|---|
| openssl |
|
| openssl098 |
|
References
Related Ubuntu Security Notices (USN)
- USN-1357-1
- OpenSSL vulnerabilities
- 9 February 2012