CVE-2006-4339 
                        Detail
                     
                    
                    
                        
                            
                                
                                    Deferred This CVE record is not being prioritized for NVD enrichment efforts due to resource or other concerns.
                                 
                             
                            
                            Current Description  
                            OpenSSL before 0.9.7, 0.9.7 before 0.9.7k, and 0.9.8 before 0.9.8c, when using an RSA key with exponent 3, removes PKCS-1 padding before generating a hash, which allows remote attackers to forge a PKCS #1 v1.5 signature that is signed by that RSA key and prevents OpenSSL from correctly verifying X.509 and other certificates that use PKCS #1.
                            
                                
                                    
                                
                                    Analysis
                                        Description 
                                    OpenSSL before 0.9.7, 0.9.7 before 0.9.7k, and 0.9.8 before 0.9.8c, when using an RSA key with exponent 3, removes PKCS-1 padding before generating a hash, which allows remote attackers to forge a PKCS #1 v1.5 signature that is signed by that RSA key and prevents OpenSSL from correctly verifying X.509 and other certificates that use PKCS
                                 
                            
                            
                            
                            
                                Metrics 
                                 
                                
                                    CVSS Version 4.0
                                     
                                    CVSS Version 3.x
                                     
                                    CVSS Version 2.0
                                     
                                
                                
                                    
                                        
                                            NVD enrichment efforts reference publicly available information to associate
                                            vector strings. CVSS information contributed by other sources is also
                                            displayed.
                                         
                                     
                                
                                
                                
                                    CVSS 4.0 Severity and Vector Strings: 
                                    
                                    
                                        
                                        
                                        
                                        
                                       
                                             NVD assessment
                                       not yet provided.   
                                     
                                    
                                    
                                    
                                    
                                 
                                
                                
                                    CVSS 3.x Severity and Vector Strings: 
                                    
                                    
                                        
                                        
                                        
                                        
												
                                             NVD assessment
														not yet provided.   
                                     
                                    
                                    
                                    
                                    
                                    
                                    
                                    
                                    
                                 
                                
                                
                                    CVSS 2.0 Severity and Vector Strings:   
                                    
                                    
                                        
                                        
                                        
												Vector:  
													(AV:N/AC:M/Au:N/C:P/I:N/A:N) 
                                     
                                    
                                    
                                    
                                    
                                    
                                    
                                    
                                    
                                 
                             
                            
                                
                                
                                
                                
                                    References to Advisories, Solutions, and Tools 
                                    
                                        By selecting these links, you will be leaving NIST webspace.
                                        We have provided these links to other web sites because they
                                        may have information that would be of interest to you. No
                                        inferences should be drawn on account of other sites being
                                        referenced, or not, from this page. There may be other web
                                        sites that are more appropriate for your purpose. NIST does
                                        not necessarily endorse the views expressed, or concur with
                                        the facts presented on these sites. Further, NIST does not
                                        endorse any commercial products that may be mentioned on
                                        these sites. Please address comments about this page to [email protected] 
                                    
                                        
                                        
                                            URL 
                                            Source(s) 
                                            Tag(s) 
                                         
                                         
                                        
                                        
                                            
                                            
                                                ftp://patches.sgi.com/support/free/security/advisories/20060901-01-P.asc 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://dev2dev.bea.com/pub/advisory/238 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://docs.info.apple.com/article.html?artnum=304829 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://docs.info.apple.com/article.html?artnum=307177 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?lang=en&cc=us&objectID=c01070495 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01118771 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://itrc.hp.com/service/cki/docDisplay.do?docId=c00849540 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://jvn.jp/en/jp/JVN51615542/index.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://jvndb.jvn.jp/ja/contents/2012/JVNDB-2012-000079.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://lists.apple.com/archives/Security-announce/2007/Dec/msg00001.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://lists.apple.com/archives/security-announce/2006/Nov/msg00001.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://lists.vmware.com/pipermail/security-announce/2008/000008.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://marc.info/?l=bind-announce&m=116253119512445&w=2 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://marc.info/?l=bugtraq&m=130497311408250&w=2 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://openvpn.net/changelog.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/21709 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Patch  
                                                 
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/21767 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/21776 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/21778 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/21785 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/21791 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/21812 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/21823 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/21846 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/21852 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/21870 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/21873 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/21906 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/21927 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/21930 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/21982 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22036 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22044 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22066 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22161 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22226 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22232 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22259 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22260 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22284 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22325 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22446 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22509 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22513 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22523 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22545 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22585 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22671 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22689 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22711 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22733 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22758 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22799 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22932 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22934 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22936 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22937 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22938 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22939 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22940 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22948 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/22949 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/23155 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/23455 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/23680 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/23794 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/23841 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/23915 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/24099 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/24930 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/24950 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/25284 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/25399 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/25649 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/26329 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/26893 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/28115 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/31492 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/38567 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/38568 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/41818 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://secunia.com/advisories/60799 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://security.freebsd.org/advisories/FreeBSD-SA-06:19.openssl.asc 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://security.gentoo.org/glsa/glsa-200609-05.xml 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://security.gentoo.org/glsa/glsa-200609-18.xml 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://securitytracker.com/id?1016791 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://securitytracker.com/id?1017522 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://slackware.com/security/viewer.php?l=slackware-security&y=2006&m=slackware-security.566955 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://slackware.com/security/viewer.php?l=slackware-security&y=2006&m=slackware-security.605306 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://sunsolve.sun.com/search/document.do?assetkey=1-26-102648-1 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://sunsolve.sun.com/search/document.do?assetkey=1-26-102656-1 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://sunsolve.sun.com/search/document.do?assetkey=1-26-102657-1 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://sunsolve.sun.com/search/document.do?assetkey=1-26-102686-1 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://sunsolve.sun.com/search/document.do?assetkey=1-26-102696-1 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://sunsolve.sun.com/search/document.do?assetkey=1-26-102722-1 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://sunsolve.sun.com/search/document.do?assetkey=1-26-102744-1 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://sunsolve.sun.com/search/document.do?assetkey=1-26-102759-1 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://sunsolve.sun.com/search/document.do?assetkey=1-66-200708-1 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://sunsolve.sun.com/search/document.do?assetkey=1-66-201247-1 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://sunsolve.sun.com/search/document.do?assetkey=1-66-201534-1 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://sunsolve.sun.com/search/document.do?assetkey=1-77-1000148.1-1 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://support.attachmate.com/techdocs/2127.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://support.attachmate.com/techdocs/2128.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://support.attachmate.com/techdocs/2137.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://support.avaya.com/elmodocs2/security/ASA-2006-188.htm 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.arkoon.fr/upload/alertes/40AK-2006-04-FR-1.1_SSL360_OPENSSL_RSA.pdf 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.bluecoat.com/support/knowledge/openSSL_RSA_Signature_forgery.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.cisco.com/en/US/products/hw/contnetw/ps4162/tsd_products_security_response09186a008077af1b.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.cisco.com/warp/public/707/cisco-sr-20061108-openssl.shtml 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.debian.org/security/2006/dsa-1174 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Patch  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://www.gentoo.org/security/en/glsa/glsa-200610-06.xml 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.gentoo.org/security/en/glsa/glsa-201408-19.xml 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.imc.org/ietf-openpgp/mail-archive/msg14307.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.kb.cert.org/vuls/id/845620 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    US Government Resource  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://www.mandriva.com/security/advisories?name=MDKSA-2006:161 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.mandriva.com/security/advisories?name=MDKSA-2006:177 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.mandriva.com/security/advisories?name=MDKSA-2006:178 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.mandriva.com/security/advisories?name=MDKSA-2006:207 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.matasano.com/log/469/many-rsa-signatures-may-be-forgeable-in-openssl-and-elsewhere/ 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.novell.com/linux/security/advisories/2006_26_sr.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.novell.com/linux/security/advisories/2006_55_ssl.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.novell.com/linux/security/advisories/2006_61_opera.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.novell.com/linux/security/advisories/2007_10_ibmjava.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.openbsd.org/errata.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.openoffice.org/security/cves/CVE-2006-4339.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.openpkg.com/security/advisories/OpenPKG-SA-2006.018.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.openpkg.org/security/advisories/OpenPKG-SA-2006.029-bind.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.openssl.org/news/secadv_20060905.txt 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Patch  
                                                 
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://www.opera.com/support/search/supsearch.dml?index=845 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.oracle.com/technetwork/topics/security/cpujan2007-101493.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.osvdb.org/28549 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.redhat.com/support/errata/RHSA-2006-0661.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Vendor Advisory  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://www.redhat.com/support/errata/RHSA-2007-0062.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.redhat.com/support/errata/RHSA-2007-0072.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.redhat.com/support/errata/RHSA-2007-0073.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.redhat.com/support/errata/RHSA-2008-0629.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.securityfocus.com/archive/1/445231/100/0/threaded 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.securityfocus.com/archive/1/445822/100/0/threaded 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.securityfocus.com/archive/1/450327/100/0/threaded 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.securityfocus.com/archive/1/456546/100/200/threaded 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.securityfocus.com/archive/1/489739/100/0/threaded 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.securityfocus.com/bid/19849 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Patch  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://www.securityfocus.com/bid/22083 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.securityfocus.com/bid/28276 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.serv-u.com/releasenotes/ 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.sybase.com/detail?id=1047991 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.ubuntu.com/usn/usn-339-1 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Patch  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://www.us-cert.gov/cas/techalerts/TA06-333A.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    US Government Resource  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://www.us.debian.org/security/2006/dsa-1173 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                                    Patch  
                                                 
                                             
                                         
                                        
                                            
                                            
                                                http://www.vmware.com/security/advisories/VMSA-2008-0005.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vmware.com/support/ace2/doc/releasenotes_ace2.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vmware.com/support/esx2/doc/esx-202-200612-patch.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vmware.com/support/esx21/doc/esx-213-200612-patch.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vmware.com/support/esx25/doc/esx-253-200612-patch.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vmware.com/support/esx25/doc/esx-254-200612-patch.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vmware.com/support/player/doc/releasenotes_player.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vmware.com/support/player2/doc/releasenotes_player2.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vmware.com/support/server/doc/releasenotes_server.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vmware.com/support/vi3/doc/esx-3069097-patch.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vmware.com/support/vi3/doc/esx-9986131-patch.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vmware.com/support/ws55/doc/releasenotes_ws55.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vmware.com/support/ws6/doc/releasenotes_ws6.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2006/3453 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2006/3566 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2006/3730 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2006/3748 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2006/3793 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2006/3899 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2006/3936 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2006/4205 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2006/4206 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2006/4207 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2006/4216 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2006/4327 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2006/4329 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2006/4366 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2006/4417 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2006/4586 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2006/4744 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2006/4750 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2006/5146 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2007/0254 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2007/0343 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2007/1401 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2007/1815 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2007/1945 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2007/2163 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2007/2315 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2007/2783 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2007/4224 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2008/0905/references 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www.vupen.com/english/advisories/2010/0366 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=c00771742 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&ID=3117 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                https://exchange.xforce.ibmcloud.com/vulnerabilities/28755 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                https://issues.rpath.com/browse/RPL-1633 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                https://issues.rpath.com/browse/RPL-616 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11656 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                https://secure-support.novell.com/KanisaPlatform/Publishing/41/3143224_f.SAL_Public.html 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                        
                                            
                                            
                                                https://www2.itrc.hp.com/service/cki/docDisplay.do?docId=c00967144 
                                             
                                            
                                            CVE, Inc., Red Hat 
                                            
                                            
                                                
                                             
                                         
                                         
                                    
                                 
                                
                                
                                    Weakness Enumeration 
                                    
                                        
                                        
                                            CWE-ID 
                                            CWE Name 
                                            Source 
                                         
                                         
                                        
                                        
                                            
                                                CWE-310 
                                                
                                             
                                            Cryptographic Issues 
                                            
														
														NIST   
														 
                                             
                                         
                                         
                                    
                                 
                                
                                
                                    Change History 
                                     9 change records found show changes 
                                     
                                    
	
		
			 
			
				CVE Modified by CVE  11/20/2024 7:15:42 PM  
			
				 
					
						Action 
						Type 
						Old Value 
						New Value 
					 
				 
				
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								ftp://patches.sgi.com/support/free/security/advisories/20060901-01-P.asc 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://dev2dev.bea.com/pub/advisory/238 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://docs.info.apple.com/article.html?artnum=304829 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://docs.info.apple.com/article.html?artnum=307177 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?lang=en&cc=us&objectID=c01070495 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?lang=en&cc=us&objectID=c01070495 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01118771 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01118771 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://itrc.hp.com/service/cki/docDisplay.do?docId=c00849540 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://itrc.hp.com/service/cki/docDisplay.do?docId=c00849540 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://jvn.jp/en/jp/JVN51615542/index.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://jvndb.jvn.jp/ja/contents/2012/JVNDB-2012-000079.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://lists.apple.com/archives/Security-announce/2007/Dec/msg00001.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://lists.apple.com/archives/security-announce/2006/Nov/msg00001.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://lists.vmware.com/pipermail/security-announce/2008/000008.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://marc.info/?l=bind-announce&m=116253119512445&w=2 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://marc.info/?l=bugtraq&m=130497311408250&w=2 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://marc.info/?l=bugtraq&m=130497311408250&w=2 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://openvpn.net/changelog.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/21709 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/21767 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/21776 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/21778 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/21785 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/21791 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/21812 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/21823 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/21846 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/21852 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/21870 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/21873 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/21906 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/21927 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/21930 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/21982 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22036 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22044 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22066 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22161 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22226 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22232 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22259 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22260 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22284 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22325 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22446 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22509 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22513 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22523 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22545 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22585 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22671 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22689 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22711 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22733 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22758 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22799 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22932 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22934 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22936 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22937 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22938 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22939 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22940 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22948 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/22949 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/23155 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/23455 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/23680 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/23794 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/23841 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/23915 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/24099 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/24930 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/24950 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/25284 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/25399 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/25649 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/26329 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/26893 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/28115 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/31492 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/38567 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/38568 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/41818 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/60799 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://security.freebsd.org/advisories/FreeBSD-SA-06:19.openssl.asc 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://security.gentoo.org/glsa/glsa-200609-05.xml 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://security.gentoo.org/glsa/glsa-200609-18.xml 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://securitytracker.com/id?1016791 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://securitytracker.com/id?1017522 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://slackware.com/security/viewer.php?l=slackware-security&y=2006&m=slackware-security.566955 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://slackware.com/security/viewer.php?l=slackware-security&y=2006&m=slackware-security.605306 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://sunsolve.sun.com/search/document.do?assetkey=1-26-102648-1 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://sunsolve.sun.com/search/document.do?assetkey=1-26-102656-1 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://sunsolve.sun.com/search/document.do?assetkey=1-26-102657-1 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://sunsolve.sun.com/search/document.do?assetkey=1-26-102686-1 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://sunsolve.sun.com/search/document.do?assetkey=1-26-102696-1 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://sunsolve.sun.com/search/document.do?assetkey=1-26-102722-1 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://sunsolve.sun.com/search/document.do?assetkey=1-26-102744-1 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://sunsolve.sun.com/search/document.do?assetkey=1-26-102759-1 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://sunsolve.sun.com/search/document.do?assetkey=1-66-200708-1 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://sunsolve.sun.com/search/document.do?assetkey=1-66-201247-1 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://sunsolve.sun.com/search/document.do?assetkey=1-66-201534-1 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://sunsolve.sun.com/search/document.do?assetkey=1-77-1000148.1-1 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://support.attachmate.com/techdocs/2127.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://support.attachmate.com/techdocs/2128.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://support.attachmate.com/techdocs/2137.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://support.avaya.com/elmodocs2/security/ASA-2006-188.htm 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.arkoon.fr/upload/alertes/40AK-2006-04-FR-1.1_SSL360_OPENSSL_RSA.pdf 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.bluecoat.com/support/knowledge/openSSL_RSA_Signature_forgery.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.cisco.com/en/US/products/hw/contnetw/ps4162/tsd_products_security_response09186a008077af1b.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.cisco.com/warp/public/707/cisco-sr-20061108-openssl.shtml 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.debian.org/security/2006/dsa-1174 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.gentoo.org/security/en/glsa/glsa-200610-06.xml 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.gentoo.org/security/en/glsa/glsa-201408-19.xml 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.imc.org/ietf-openpgp/mail-archive/msg14307.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.kb.cert.org/vuls/id/845620 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.mandriva.com/security/advisories?name=MDKSA-2006:161 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.mandriva.com/security/advisories?name=MDKSA-2006:177 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.mandriva.com/security/advisories?name=MDKSA-2006:178 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.mandriva.com/security/advisories?name=MDKSA-2006:207 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.matasano.com/log/469/many-rsa-signatures-may-be-forgeable-in-openssl-and-elsewhere/ 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.novell.com/linux/security/advisories/2006_26_sr.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.novell.com/linux/security/advisories/2006_55_ssl.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.novell.com/linux/security/advisories/2006_61_opera.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.novell.com/linux/security/advisories/2007_10_ibmjava.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.openbsd.org/errata.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.openoffice.org/security/cves/CVE-2006-4339.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.openpkg.com/security/advisories/OpenPKG-SA-2006.018.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.openpkg.org/security/advisories/OpenPKG-SA-2006.029-bind.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.openssl.org/news/secadv_20060905.txt 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.opera.com/support/search/supsearch.dml?index=845 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.oracle.com/technetwork/topics/security/cpujan2007-101493.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.osvdb.org/28549 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.redhat.com/support/errata/RHSA-2006-0661.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.redhat.com/support/errata/RHSA-2007-0062.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.redhat.com/support/errata/RHSA-2007-0072.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.redhat.com/support/errata/RHSA-2007-0073.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.redhat.com/support/errata/RHSA-2008-0629.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.securityfocus.com/archive/1/445231/100/0/threaded 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.securityfocus.com/archive/1/445822/100/0/threaded 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.securityfocus.com/archive/1/450327/100/0/threaded 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.securityfocus.com/archive/1/450327/100/0/threaded 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.securityfocus.com/archive/1/456546/100/200/threaded 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.securityfocus.com/archive/1/489739/100/0/threaded 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.securityfocus.com/bid/19849 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.securityfocus.com/bid/22083 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.securityfocus.com/bid/28276 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.serv-u.com/releasenotes/ 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.sybase.com/detail?id=1047991 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.ubuntu.com/usn/usn-339-1 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.us-cert.gov/cas/techalerts/TA06-333A.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.us.debian.org/security/2006/dsa-1173 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vmware.com/security/advisories/VMSA-2008-0005.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vmware.com/support/ace2/doc/releasenotes_ace2.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vmware.com/support/esx2/doc/esx-202-200612-patch.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vmware.com/support/esx21/doc/esx-213-200612-patch.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vmware.com/support/esx25/doc/esx-253-200612-patch.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vmware.com/support/esx25/doc/esx-254-200612-patch.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vmware.com/support/player/doc/releasenotes_player.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vmware.com/support/player2/doc/releasenotes_player2.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vmware.com/support/server/doc/releasenotes_server.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vmware.com/support/vi3/doc/esx-3069097-patch.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vmware.com/support/vi3/doc/esx-9986131-patch.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vmware.com/support/ws55/doc/releasenotes_ws55.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vmware.com/support/ws6/doc/releasenotes_ws6.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2006/3453 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2006/3566 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2006/3730 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2006/3748 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2006/3793 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2006/3899 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2006/3936 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2006/4205 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2006/4206 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2006/4207 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2006/4216 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2006/4327 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2006/4329 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2006/4366 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2006/4417 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2006/4586 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2006/4744 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2006/4750 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2006/5146 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2007/0254 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2007/0343 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2007/1401 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2007/1815 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2007/1945 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2007/2163 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2007/2315 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2007/2783 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2007/4224 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2008/0905/references 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.vupen.com/english/advisories/2010/0366 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=c00771742 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=c00771742 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&ID=3117 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								https://exchange.xforce.ibmcloud.com/vulnerabilities/28755 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								https://issues.rpath.com/browse/RPL-1633 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								https://issues.rpath.com/browse/RPL-616 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11656 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								https://secure-support.novell.com/KanisaPlatform/Publishing/41/3143224_f.SAL_Public.html 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								https://www2.itrc.hp.com/service/cki/docDisplay.do?docId=c00967144 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								https://www2.itrc.hp.com/service/cki/docDisplay.do?docId=c00967144 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								https://www2.itrc.hp.com/service/cki/docDisplay.do?docId=c00967144 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								https://www2.itrc.hp.com/service/cki/docDisplay.do?docId=c00967144 
								  
					 
				 
			
		 
	
		
			 
			
				CVE Modified by Red Hat, Inc.  5/13/2024 9:38:57 PM  
			
				 
					
						Action 
						Type 
						Old Value 
						New Value 
					 
				 
				
					
				 
			
		 
	
		
			 
			
				CVE Modified by Red Hat, Inc.  10/17/2018 5:35:10 PM  
			
				 
					
						Action 
						Type 
						Old Value 
						New Value 
					 
				 
				
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.securityfocus.com/archive/1/445231/100/0/threaded [No Types Assigned] 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.securityfocus.com/archive/1/445822/100/0/threaded [No Types Assigned] 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.securityfocus.com/archive/1/450327/100/0/threaded [No Types Assigned] 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.securityfocus.com/archive/1/456546/100/200/threaded [No Types Assigned] 
								  
					 
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://www.securityfocus.com/archive/1/489739/100/0/threaded [No Types Assigned] 
								  
					 
					
						Removed 
						Reference 
						
							
							
							
								http://www.securityfocus.com/archive/1/archive/1/445231/100/0/threaded [No Types Assigned] 
								  
							
						
								
								
						 
					 
					
						Removed 
						Reference 
						
							
							
							
								http://www.securityfocus.com/archive/1/archive/1/445822/100/0/threaded [No Types Assigned] 
								  
							
						
								
								
						 
					 
					
						Removed 
						Reference 
						
							
							
							
								http://www.securityfocus.com/archive/1/archive/1/450327/100/0/threaded [No Types Assigned] 
								  
							
						
								
								
						 
					 
					
						Removed 
						Reference 
						
							
							
							
								http://www.securityfocus.com/archive/1/archive/1/456546/100/200/threaded [No Types Assigned] 
								  
							
						
								
								
						 
					 
					
						Removed 
						Reference 
						
							
							
							
								http://www.securityfocus.com/archive/1/archive/1/489739/100/0/threaded [No Types Assigned] 
								  
							
						
								
								
						 
					 
				 
			
		 
	
		
			 
			
				CVE Modified by Red Hat, Inc.  10/10/2017 9:31:12 PM  
			
				 
					
						Action 
						Type 
						Old Value 
						New Value 
					 
				 
				
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11656 [No Types Assigned] 
								  
					 
					
						Removed 
						Reference 
						
							
							
							
								http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11656 [No Types Assigned] 
								  
							
						
								
								
						 
					 
				 
			
		 
	
		
			 
			
				CVE Modified by Red Hat, Inc.  7/19/2017 9:33:01 PM  
			
				 
					
						Action 
						Type 
						Old Value 
						New Value 
					 
				 
				
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								https://exchange.xforce.ibmcloud.com/vulnerabilities/28755 [No Types Assigned] 
								  
					 
					
						Removed 
						Reference 
						
							
							
							
								http://xforce.iss.net/xforce/xfdb/28755 [No Types Assigned] 
								  
							
						
								
								
						 
					 
				 
			
		 
	
		
			 
			
				CVE Translated by NIST  10/20/2016 1:45:02 AM  
			
				 
					
						Action 
						Type 
						Old Value 
						New Value 
					 
				 
				
					
						Added 
						Translation 
						
							
							
								
								
							
							
						 
							
						
							
								OpenSSL en versiones anteriores a 0.9.7, 0.9.7 en versiones anteriores a 0.9.7k y 0.9.8 en versiones anteriores a 0.9.8c, cuando usa una clave RSA con exponente 3, elimina relleno PKCS-1 antes de generar un hash, lo que permite a atacantes remotos falsificar una firma PKCS #1 v1.5 que está firmada por dicha clave RSA e impide a OpenSSL verificar correctamente los certificados X.509 y otros que utilizan PKCS #1. 
								  
					 
					
						Removed 
						Translation 
						
							
							
							
								OpenSSL anterior a 0.9.7, 0.9.7 anterior a 0.9.7k, y 0.9.8 anterior a 0.9.8c, cuando se usa una clave RSA con exponente 3, elimina el relleno PKCS-1 antes de generar un resumen (hash), lo cual permite a atacantes remotos falsificar una firma PKCS #1 v1.5 que está firmada por dicha clave RSA e impide que OpenSSL verifique correctamente certificados X.509 y otros que también utilicen PKCS #1. 
								  
							
						
								
								
						 
					 
				 
			
		 
	
		
			 
			
				CVE Modified by Red Hat, Inc.  10/17/2016 11:40:44 PM  
			
				 
					
						Action 
						Type 
						Old Value 
						New Value 
					 
				 
				
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://marc.info/?l=bind-announce&m=116253119512445&w=2 
								  
					 
					
						Removed 
						Reference 
						
							
							
							
								http://marc.theaimsgroup.com/?l=bind-announce&m=116253119512445&w=2 
								  
							
						
								
								
						 
					 
				 
			
		 
	
		
			 
			
				CVE Modified by Red Hat, Inc.  11/13/2014 9:59:21 PM  
			
				 
					
						Action 
						Type 
						Old Value 
						New Value 
					 
				 
				
					
						Added 
						Reference 
						
							
							
								
								
							
							
						 
							
						
							
								http://secunia.com/advisories/41818 
								  
					 
				 
			
		 
	
		
			 
			
				Initial CVE Analysis  9/05/2006 1:17:00 PM  
			
				 
					
						Action 
						Type 
						Old Value 
						New Value 
					 
				 
				
					
				 
			
		  
	 
                                 
                             
                         
                        
                            
                                Quick Info 
                                CVE Dictionary Entry:  CVE-2006-4339  NVD
                                Published Date:  09/05/2006  NVD
                                Last Modified:  04/02/2025  
                                Source:  Red Hat, Inc.