CVE-2009-2409

The Network Security Services (NSS) library before 3.12.3, as used in Firefox; GnuTLS before 2.6.4 and 2.7.4; OpenSSL 0.9.8 through 0.9.8k; and other products support MD2 with X.509 certificates, which might allow remote attackers to spoof certificates by using MD2 design flaws to generate a hash collision in less than brute-force time. NOTE: the scope of this issue is currently limited because the amount of computation required is still large.
References
Link Resource
http://java.sun.com/j2se/1.5.0/ReleaseNotes.html Patch
http://java.sun.com/javase/6/webnotes/6u17.html
http://lists.apple.com/archives/security-announce/2009/Nov/msg00000.html Vendor Advisory
http://secunia.com/advisories/36139 Vendor Advisory
http://secunia.com/advisories/36157 Vendor Advisory
http://secunia.com/advisories/36434 Vendor Advisory
http://secunia.com/advisories/36669
http://secunia.com/advisories/36739 Vendor Advisory
http://secunia.com/advisories/37386 Vendor Advisory
http://secunia.com/advisories/42467 Vendor Advisory
http://security.gentoo.org/glsa/glsa-200911-02.xml
http://security.gentoo.org/glsa/glsa-200912-01.xml
http://support.apple.com/kb/HT3937
http://www.debian.org/security/2009/dsa-1874
http://www.mandriva.com/security/advisories?name=MDVSA-2009:197
http://www.mandriva.com/security/advisories?name=MDVSA-2009:216
http://www.mandriva.com/security/advisories?name=MDVSA-2009:258
http://www.mandriva.com/security/advisories?name=MDVSA-2010:084
http://www.redhat.com/support/errata/RHSA-2009-1207.html
http://www.redhat.com/support/errata/RHSA-2009-1432.html
http://www.securityfocus.com/archive/1/515055/100/0/threaded
http://www.securitytracker.com/id?1022631
http://www.ubuntu.com/usn/usn-810-1
http://www.vmware.com/security/advisories/VMSA-2010-0019.html
http://www.vupen.com/english/advisories/2009/2085 Vendor Advisory
http://www.vupen.com/english/advisories/2009/3184 Vendor Advisory
http://www.vupen.com/english/advisories/2010/3126 Vendor Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2009-2409
https://lists.balabit.com/pipermail/syslog-ng-announce/2011-January/000101.html
https://lists.balabit.com/pipermail/syslog-ng-announce/2011-January/000102.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10763
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6631
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7155
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8594
https://rhn.redhat.com/errata/RHSA-2010-0095.html
https://usn.ubuntu.com/810-2/
https://www.debian.org/security/2009/dsa-1888
http://java.sun.com/j2se/1.5.0/ReleaseNotes.html Patch
http://java.sun.com/javase/6/webnotes/6u17.html
http://lists.apple.com/archives/security-announce/2009/Nov/msg00000.html Vendor Advisory
http://secunia.com/advisories/36139 Vendor Advisory
http://secunia.com/advisories/36157 Vendor Advisory
http://secunia.com/advisories/36434 Vendor Advisory
http://secunia.com/advisories/36669
http://secunia.com/advisories/36739 Vendor Advisory
http://secunia.com/advisories/37386 Vendor Advisory
http://secunia.com/advisories/42467 Vendor Advisory
http://security.gentoo.org/glsa/glsa-200911-02.xml
http://security.gentoo.org/glsa/glsa-200912-01.xml
http://support.apple.com/kb/HT3937
http://www.debian.org/security/2009/dsa-1874
http://www.mandriva.com/security/advisories?name=MDVSA-2009:197
http://www.mandriva.com/security/advisories?name=MDVSA-2009:216
http://www.mandriva.com/security/advisories?name=MDVSA-2009:258
http://www.mandriva.com/security/advisories?name=MDVSA-2010:084
http://www.redhat.com/support/errata/RHSA-2009-1207.html
http://www.redhat.com/support/errata/RHSA-2009-1432.html
http://www.securityfocus.com/archive/1/515055/100/0/threaded
http://www.securitytracker.com/id?1022631
http://www.ubuntu.com/usn/usn-810-1
http://www.vmware.com/security/advisories/VMSA-2010-0019.html
http://www.vupen.com/english/advisories/2009/2085 Vendor Advisory
http://www.vupen.com/english/advisories/2009/3184 Vendor Advisory
http://www.vupen.com/english/advisories/2010/3126 Vendor Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2009-2409
https://lists.balabit.com/pipermail/syslog-ng-announce/2011-January/000101.html
https://lists.balabit.com/pipermail/syslog-ng-announce/2011-January/000102.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10763
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6631
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7155
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8594
https://rhn.redhat.com/errata/RHSA-2010-0095.html
https://usn.ubuntu.com/810-2/
https://www.debian.org/security/2009/dsa-1888
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*
OR cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:*:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.0:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.2:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.2.1:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.3:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.3.1:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.3.2:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.4:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.4.1:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.4.2:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.4.3:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.5:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.6:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.6.1:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.7:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.7.1:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.7.2:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.7.3:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.7.5:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.7.7:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.8:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.9:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.9.5:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.10:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.11.2:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.11.4:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.11.7:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.11.8:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.12:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:nss:3.12.1:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:openssl:openssl:0.9.8:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.8a:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.8b:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.8c:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.8d:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.8e:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.8f:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.8g:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.8h:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.8i:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.8j:*:*:*:*:*:*:*
cpe:2.3:a:openssl:openssl:0.9.8k:*:*:*:*:*:*:*

Configuration 3 (hide)

OR cpe:2.3:a:gnu:gnutls:*:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.0.16:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.0.17:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.0.18:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.0.19:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.0.20:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.0.21:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.0.22:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.0.23:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.0.24:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.0.25:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.1.13:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.1.14:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.1.15:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.1.16:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.1.17:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.1.18:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.1.19:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.1.20:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.1.21:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.1.22:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.1.23:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.2.0:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.2.1:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.2.2:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.2.3:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.2.4:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.2.5:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.2.6:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.2.7:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.2.8:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.2.8.1a1:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.2.9:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.2.10:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.2.11:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.3.0:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.3.1:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.3.2:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.3.3:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.3.4:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.3.5:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.4.0:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.4.1:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.4.2:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.4.3:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.4.4:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.4.5:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.5.0:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.5.1:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.5.2:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.5.3:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.5.4:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.5.5:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.6.0:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.6.1:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.6.2:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.6.3:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.7.0:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.7.1:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.7.2:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.7.3:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.7.4:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.7.5:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.7.6:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.7.7:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.7.8:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.7.9:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.7.10:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.7.11:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.7.12:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.7.13:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.7.14:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.7.15:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.7.16:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.7.17:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.7.18:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:1.7.19:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.0.2:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.0.3:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.0.4:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.1.0:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.1.1:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.1.2:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.1.3:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.1.4:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.1.5:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.1.6:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.1.7:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.1.8:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.2.0:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.2.1:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.2.2:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.2.3:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.2.4:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.2.5:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.3.0:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.3.1:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.3.2:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.3.3:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.3.4:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.3.5:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.3.6:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.3.7:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.3.8:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.3.9:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.3.10:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.3.11:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.4.0:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.4.1:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.4.2:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.5.0:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.6.0:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.6.1:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.6.2:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnutls:2.7.4:*:*:*:*:*:*:*

History

21 Nov 2024, 01:04

Type Values Removed Values Added
References () http://java.sun.com/j2se/1.5.0/ReleaseNotes.html - Patch () http://java.sun.com/j2se/1.5.0/ReleaseNotes.html - Patch
References () http://java.sun.com/javase/6/webnotes/6u17.html - () http://java.sun.com/javase/6/webnotes/6u17.html -
References () http://lists.apple.com/archives/security-announce/2009/Nov/msg00000.html - Vendor Advisory () http://lists.apple.com/archives/security-announce/2009/Nov/msg00000.html - Vendor Advisory
References () http://secunia.com/advisories/36139 - Vendor Advisory () http://secunia.com/advisories/36139 - Vendor Advisory
References () http://secunia.com/advisories/36157 - Vendor Advisory () http://secunia.com/advisories/36157 - Vendor Advisory
References () http://secunia.com/advisories/36434 - Vendor Advisory () http://secunia.com/advisories/36434 - Vendor Advisory
References () http://secunia.com/advisories/36669 - () http://secunia.com/advisories/36669 -
References () http://secunia.com/advisories/36739 - Vendor Advisory () http://secunia.com/advisories/36739 - Vendor Advisory
References () http://secunia.com/advisories/37386 - Vendor Advisory () http://secunia.com/advisories/37386 - Vendor Advisory
References () http://secunia.com/advisories/42467 - Vendor Advisory () http://secunia.com/advisories/42467 - Vendor Advisory
References () http://security.gentoo.org/glsa/glsa-200911-02.xml - () http://security.gentoo.org/glsa/glsa-200911-02.xml -
References () http://security.gentoo.org/glsa/glsa-200912-01.xml - () http://security.gentoo.org/glsa/glsa-200912-01.xml -
References () http://support.apple.com/kb/HT3937 - () http://support.apple.com/kb/HT3937 -
References () http://www.debian.org/security/2009/dsa-1874 - () http://www.debian.org/security/2009/dsa-1874 -
References () http://www.mandriva.com/security/advisories?name=MDVSA-2009:197 - () http://www.mandriva.com/security/advisories?name=MDVSA-2009:197 -
References () http://www.mandriva.com/security/advisories?name=MDVSA-2009:216 - () http://www.mandriva.com/security/advisories?name=MDVSA-2009:216 -
References () http://www.mandriva.com/security/advisories?name=MDVSA-2009:258 - () http://www.mandriva.com/security/advisories?name=MDVSA-2009:258 -
References () http://www.mandriva.com/security/advisories?name=MDVSA-2010:084 - () http://www.mandriva.com/security/advisories?name=MDVSA-2010:084 -
References () http://www.redhat.com/support/errata/RHSA-2009-1207.html - () http://www.redhat.com/support/errata/RHSA-2009-1207.html -
References () http://www.redhat.com/support/errata/RHSA-2009-1432.html - () http://www.redhat.com/support/errata/RHSA-2009-1432.html -
References () http://www.securityfocus.com/archive/1/515055/100/0/threaded - () http://www.securityfocus.com/archive/1/515055/100/0/threaded -
References () http://www.securitytracker.com/id?1022631 - () http://www.securitytracker.com/id?1022631 -
References () http://www.ubuntu.com/usn/usn-810-1 - () http://www.ubuntu.com/usn/usn-810-1 -
References () http://www.vmware.com/security/advisories/VMSA-2010-0019.html - () http://www.vmware.com/security/advisories/VMSA-2010-0019.html -
References () http://www.vupen.com/english/advisories/2009/2085 - Vendor Advisory () http://www.vupen.com/english/advisories/2009/2085 - Vendor Advisory
References () http://www.vupen.com/english/advisories/2009/3184 - Vendor Advisory () http://www.vupen.com/english/advisories/2009/3184 - Vendor Advisory
References () http://www.vupen.com/english/advisories/2010/3126 - Vendor Advisory () http://www.vupen.com/english/advisories/2010/3126 - Vendor Advisory
References () https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2009-2409 - () https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2009-2409 -
References () https://lists.balabit.com/pipermail/syslog-ng-announce/2011-January/000101.html - () https://lists.balabit.com/pipermail/syslog-ng-announce/2011-January/000101.html -
References () https://lists.balabit.com/pipermail/syslog-ng-announce/2011-January/000102.html - () https://lists.balabit.com/pipermail/syslog-ng-announce/2011-January/000102.html -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10763 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10763 -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6631 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6631 -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7155 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7155 -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8594 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8594 -
References () https://rhn.redhat.com/errata/RHSA-2010-0095.html - () https://rhn.redhat.com/errata/RHSA-2010-0095.html -
References () https://usn.ubuntu.com/810-2/ - () https://usn.ubuntu.com/810-2/ -
References () https://www.debian.org/security/2009/dsa-1888 - () https://www.debian.org/security/2009/dsa-1888 -

Information

Published : 2009-07-30 19:30

Updated : 2024-11-21 01:04


NVD link : CVE-2009-2409

Mitre link : CVE-2009-2409

CVE.ORG link : CVE-2009-2409


JSON object : View

Products Affected

openssl

  • openssl

gnu

  • gnutls

mozilla

  • firefox
  • nss
CWE
CWE-310

Cryptographic Issues