Montavista
Got a hot project?  Login
  • ネットワーク機器・インフラ
  • OA機器
  • 医療機器
  • エンジニアリング サービス
  • 会社情報

CVE Vulnerabilities
  • CVE-2012
  • CVE-2011
  • CVE-2010
  • CVE-2009
  • CVE-2008
  • CVE-2007
  • CVE-2006
  • CVE-2005
  • CVE-2004
  • CVE-2003
CVE-2009-3555

Severity : Medium
Published : 2009-11-09
Modified : 2012-10-22
Base Score : 5.8
Details : The TLS protocol, and the SSL protocol 3.0 and possibly earlier, as used in Microsoft Internet Information Services (IIS) 7.0, mod_ssl in the Apache HTTP Server 2.2.14 and earlier, OpenSSL before 0.9.8l, GnuTLS 2.8.5 and earlier, Mozilla Network Security Services (NSS) 3.12.4 and earlier, multiple Cisco products, and other products, does not properly associate renegotiation handshakes with an existing connection, which allows man-in-the-middle attackers to insert data into HTTPS sessions, and possibly other types of sessions protected by TLS or SSL, by sending an unauthenticated request that is processed retroactively by a server in a post-renegotiation context, related to a "plaintext injection" attack, aka the "Project Mogul" issue.
Product/Version : Pro 4.x  
CGE 4.x  
Mobilinux 4.x  
Pro 5.0  
Mobilinux 5.0.24  
MVL 5 Atom  
CGE 5.x  
Mobilinux 5.x  
Pro 5.0.24  
MVL 5 OMAP3  
MVL 5 OMAP3530  
Pro 5.0.24  
MVL 5 OMAP3  
MVL 5 OMAP3530  
Pro 5.0  
CGE 5.x  
Mobilinux 5.x  
Mobilinux 5.0.24  
MVL 5 Atom  
Carrier Grade CGE 6.0  
CGE 5.x  
Mobilinux 5.x  
Pro 5.0  
Mobilinux 5.0.24  
MVL 5 Atom  
Pro 5.0.24  
MVL 5 OMAP3  
MVL 5 OMAP3530  
 
 
 


CVE Vulnerabilities List CVE-2009
CVE-2009-5064CVE-2009-4895CVE-2009-4881CVE-2009-4880
CVE-2009-4410CVE-2009-4377CVE-2009-4355CVE-2009-4308
CVE-2009-4307CVE-2009-4272CVE-2009-4141CVE-2009-4135
CVE-2009-4134CVE-2009-4131CVE-2009-4029CVE-2009-4022
CVE-2009-4020CVE-2009-4017CVE-2009-4005CVE-2009-3889
CVE-2009-3767CVE-2009-3736CVE-2009-3726CVE-2009-3720
CVE-2009-3639CVE-2009-3621CVE-2009-3620CVE-2009-3612
CVE-2009-3563CVE-2009-3560CVE-2009-3559CVE-2009-3558
CVE-2009-3557CVE-2009-3555CVE-2009-3550CVE-2009-3547
CVE-2009-3490CVE-2009-3245CVE-2009-3238CVE-2009-3230
CVE-2009-3228CVE-2009-3095CVE-2009-3094CVE-2009-3080
CVE-2009-3002CVE-2009-3001CVE-2009-2910CVE-2009-2909
CVE-2009-2903CVE-2009-2849CVE-2009-2848CVE-2009-2847
CVE-2009-2730CVE-2009-2563CVE-2009-2562CVE-2009-2560
CVE-2009-2417CVE-2009-2412CVE-2009-2409CVE-2009-2042
CVE-2009-1895CVE-2009-1891CVE-2009-1890CVE-2009-1632
CVE-2009-1630CVE-2009-1574CVE-2009-1417CVE-2009-1387
CVE-2009-1386CVE-2009-1377CVE-2009-1337CVE-2009-1297
CVE-2009-1269CVE-2009-1268CVE-2009-1267CVE-2009-1265
CVE-2009-1252CVE-2009-1210CVE-2009-1196CVE-2009-1195
CVE-2009-1194CVE-2009-1192CVE-2009-0949CVE-2009-0887
CVE-2009-0859CVE-2009-0835CVE-2009-0834CVE-2009-0798
CVE-2009-0791CVE-2009-0778CVE-2009-0316CVE-2009-0217
CVE-2009-0163CVE-2009-0159CVE-2009-0028CVE-2009-0021


所在地 | 採用情報 | 個人情報保護方針     
© 2013 MontaVista Software, LLC. All Rights Reserved