5
CVSSv2

CVE-2009-5009

Published: 14/10/2010 Updated: 14/10/2010
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Double free vulnerability in OpenConnect prior to 1.40 might allow remote AnyConnect SSL VPN servers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted DTLS Cipher option during a reconnect operation.

Vulnerable Product Search on Vulmon Subscribe to Product

infradead openconnect 1.20

infradead openconnect 1.00

infradead openconnect

infradead openconnect 1.10