OpenSSL 1.0.0f DTLS Denial of Service
Medium Nessus Plugin ID 57712
SynopsisThe remote host may be affected by a denial of service vulnerability.
DescriptionAccording to its banner, the remote web server is running OpenSSL version 1.0.0f. This version has a flaw in the fix for CVE-2011-4108 such that Datagram Transport Layer Security (DTLS) applications that use it are vulnerable to a denial of service attack.
SolutionUpgrade to OpenSSL 1.0.0g or later.