Upstream information
Description
ssl/s3_pkt.c in OpenSSL before 0.9.8i allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a DTLS ChangeCipherSpec packet that occurs before ClientHello.NVD CVSS v2 Base Score: 5.0 (AV:N/AC:L/Au:N/C:N/I:N/A:P)
Novell/SUSE information
Novell Bugzilla entries: 459468, 509031, 515659, 629905 SUSE Security Advisories:- SUSE-SR:2009:012, published Fri, 03 Jul 2009 16:00:00 +0000
