CVE-2011-3210

Source
https://cve.org/CVERecord?id=CVE-2011-3210
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2011-3210.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2011-3210
Downstream
Related
Withdrawn
2026-01-27T04:11:55.417768Z
Published
2011-09-22T10:55:03Z
Modified
2026-01-27T04:11:55.417768Z
Summary
[none]
Details

The ephemeral ECDH ciphersuite functionality in OpenSSL 0.9.8 through 0.9.8r and 1.0.x before 1.0.0e does not ensure thread safety during processing of handshake messages from clients, which allows remote attackers to cause a denial of service (daemon crash) via out-of-order messages that violate the TLS protocol.

References

Affected packages