CVE-2013-1621
Publication date 8 February 2013
Last updated 24 July 2024
Ubuntu priority
Description
Array index error in the SSL module in PolarSSL before 1.2.5 might allow remote attackers to cause a denial of service via vectors involving a crafted padding-length value during validation of CBC padding in a TLS session, a different vulnerability than CVE-2013-0169.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| polarssl | ||
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| mbedtls | ||
| 16.04 LTS xenial |
Not affected
|
|
| 14.04 LTS trusty | Not in release | |