OpenSSL CVE-2013-0166 Weak Encryption Vulnerability

description-logoDescription

A flaw in the OpenSSL handling of OCSP response verification can be exploitedin a denial of service attack.All versions of OpenSSL are affected including 1.0.1c, 1.0.0j and 0.9.8xThis flaw was discovered and fixed by Stephen Henson of the OpenSSL core team.Affected users should upgrade to OpenSSL 1.0.1d, 1.0.0k or 0.9.8y.ReferencesURL for this Security Advisory:https://www.openssl.org/news/secadv_20130204.txtWikipedia AES-NI description:https://en.wikipedia.org/wiki/AES-NI

affected-products-logoAffected Applications

OpenSSL

CVE References

CVE-2013-0166