Description
The Server Gated Cryptography (SGC) implementation in OpenSSL before 0.9.8s and 1.x before 1.0.0f does not properly handle handshake restarts, which allows remote attackers to cause a denial of service (CPU consumption) via unspecified vectors.
Remediation
References
Related Vulnerabilities
WordPress Plugin Fixedly Media Gallery Cross-Site Scripting (1.3.1)
Joomla Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-7983)
MySQL CVE-2015-4802 Vulnerability (CVE-2015-4802)
WebLogic CVE-2021-2018 Vulnerability (CVE-2021-2018)
MyBB Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2023-41362)