2 results (0.002 seconds)

CVSS: 7.1EPSS: 4%CPEs: 8EXPL: 0

IBM GSKit 7.x before 7.0.4.48 and 8.x before 8.0.50.16, as used in IBM Security Directory Server (ISDS) and Tivoli Directory Server (TDS), allows remote attackers to cause a denial of service (application crash or hang) via a malformed X.509 certificate chain. IBM GSKit 7.x anterior a la versión 7.0.4.48 y 8.x anterior a 8.0.50.16, tal como se usa en IBM Security Directory Server (ISDS) y Tivoli Directory Server (TDS), permite a atacantes remotos provocar una denegación de servicio (caída de la aplicación o cuelgue) a través de una cadena de certificados. • http://osvdb.org/102556 http://secunia.com/advisories/56698 http://secunia.com/advisories/56699 http://www-01.ibm.com/support/docview.wss?uid=swg21662902 http://www-01.ibm.com/support/docview.wss?uid=swg21669554 http://www-01.ibm.com/support/docview.wss?uid=swg21676091 http://www-01.ibm.com/support/docview.wss?uid=swg21676092 http://www.securitytracker.com/id/1029687 https://exchange.xforce.ibmcloud.com/vulnerabilities/89863 • CWE-20: Improper Input Validation •

CVSS: 7.8EPSS: 1%CPEs: 7EXPL: 0

IBM Global Security Kit (aka GSKit), as used in Content Manager OnDemand 8.5 and 9.0 and other products, allows remote attackers to cause a denial of service via a crafted handshake during resumption of an SSLv2 session. IBM Global Security Kit (aka GSKit), tal como se utiliza en Content Manager OnDemand 8.5 y 9.0 y otros productos, permite a atacantes remotos provocar una denegación de servicio a través de un handshake manipulado durante la reanudación de una sesión de SSLv2. • http://secunia.com/advisories/56058 http://www-01.ibm.com/support/docview.wss?uid=swg21659548 http://www-01.ibm.com/support/docview.wss?uid=swg21659716 http://www-01.ibm.com/support/docview.wss?uid=swg21659837 http://www-01.ibm.com/support/docview.wss?uid=swg21669554 http://www-01.ibm.com/support/docview.wss? • CWE-310: Cryptographic Issues •