5
CVSSv2

CVE-2014-2899

Published: 22/04/2014 Updated: 01/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

wolfSSL CyaSSL prior to 2.9.4 allows remote malicious users to cause a denial of service (NULL pointer dereference) via (1) a request for the peer certificate when a certificate parsing failure occurs or (2) a client_key_exchange message when the ephemeral key is not found.

Vulnerable Product Search on Vulmon Subscribe to Product

yassl cyassl 0.4.0

yassl cyassl 0.5.0

yassl cyassl 0.9.6

yassl cyassl 0.9.8

yassl cyassl 0.9.9

yassl cyassl 1.1.0

yassl cyassl 1.2.0

yassl cyassl 1.6.5

yassl cyassl 1.8.0

yassl cyassl 2.2.0

yassl cyassl 2.3.0

yassl cyassl 2.5.0

yassl cyassl 0.5.5

yassl cyassl 0.6.0

yassl cyassl 1.0.0

yassl cyassl 1.3.0

yassl cyassl 1.4.0

yassl cyassl 1.9.0

yassl cyassl 2.0.0

yassl cyassl 2.4.0

yassl cyassl 2.4.6

yassl cyassl 0.2.0

yassl cyassl 0.3.0

yassl cyassl 0.8.0

yassl cyassl 0.9.0

yassl cyassl 1.0.3

yassl cyassl 1.0.6

yassl cyassl 1.5.6

yassl cyassl 1.6.0

yassl cyassl 2.0.2

yassl cyassl 2.0.6

yassl cyassl 2.0.8

yassl cyassl 2.7.0

yassl cyassl 2.6.0

yassl cyassl 0.6.2

yassl cyassl 0.6.3

yassl cyassl 1.0.2

yassl cyassl 1.5.0

yassl cyassl 1.5.4

yassl cyassl

yassl cyassl 2.8.0