XySSL before 0.9 allows remote attackers to cause a denial of service (infinite loop) via an X.509 certificate that does not pass the RSA signature check during verification.
Weaknesses in this category are related to improper management of system resources.
Link | Tags |
---|---|
http://www.vupen.com/english/advisories/2008/0917 | vdb entry patch vendor advisory |
http://osvdb.org/49101 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/41255 | vdb entry |
http://polarssl.org/?archive#001c |