The SSL/TLS server implementation in OpenSSL 0.9.7 before 0.9.7h and 0.9.8 before 0.9.8a, when using the SSL_OP_MSIE_SSLV2_RSA_PADDING option, disables a verification step that is required for preventing protocol version rollback attacks, which allows remote attackers to force a client and server to use a weaker protocol than needed via a man-in-the-middle attack.
CVSS Details
- CVSS 3.1 Base Score: 5.9
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Apple Osx Openssl | — | Apply OS X security update 2005-009 | Dec 16, 2011 | Oct 18, 2005 |
| Debian | — | Upgrade openssl | Jul 30, 2024 | Oct 18, 2005 |
| F5 Big Ip | — | Update F5 BIG-IP to the latest version | Jun 17, 2026 | Mar 28, 2013 |
| Freebsd | — | Upgrade compat5x-sparc64Upgrade openssl-overwrite-baseUpgrade openssl-beta-overwrite-baseUpgrade compat5x-i386Upgrade openssl-betaUpgrade opensslUpgrade compat5x-alphaUpgrade compat5x-amd64Upgrade FreeBSD | Dec 10, 2025 | Oct 12, 2005 |
| Gentoo Linux | — | Upgrade dev-libs/openssl. | Oct 30, 2017 | Oct 18, 2005 |
| Suse | — | Upgrade openssl-devel-64bitUpgrade openssl-x86Upgrade openssl-devel-32bitUpgrade opensslUpgrade openssl-64bitUpgrade openssl-32bitUpgrade openssl-devel | Feb 17, 2015 | Oct 18, 2005 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub