Netscape Enterprise Server SSL Handshake DoS

medium Nessus Plugin ID 10155

Synopsis

The remote service is vulnerable to a denial of service attack.

Description

There is an SSL handshake bug in the remote secure web server that could lead to a denial of service attack.

An attacker may use this flaw to prevent your site from working properly.

Solution

Apply the appropriate vendor-supplied patch (see links).

See Also

http://www.nessus.org/u?d073bf3e

Plugin Details

Severity: Medium

ID: 10155

File Name: netscape_crash.nasl

Version: 1.37

Type: remote

Family: Web Servers

Published: 7/7/1999

Updated: 4/11/2022

Configuration: Enable thorough checks

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 4.4

CVSS v2

Risk Factor: Medium

Base Score: 5

Temporal Score: 3.9

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Information

CPE: cpe:/a:netscape:navigator

Required KB Items: www/iplanet

Exploit Available: true

Exploit Ease: Exploits are available

Vulnerability Publication Date: 7/6/1999

Reference Information

CVE: CVE-1999-0752

BID: 516