cancel
Showing results for 
Search instead for 
Did you mean: 

OpenSSL vulnerability CVE-2014-0224

Former Member
0 Kudos

My customer want to know whether ASE is affected by the following OpenSSL vulnerability in http://www.openssl.org/news/secadv_20140605.txt

      SSL/TLS MITM vulnerability (CVE-2014-0224),

      DTLS recursion flaw (CVE-2014-0221)

      DTLS invalid fragment vulnerability (CVE-2014-0195)

      SSL_MODE_RELEASE_BUFFERS NULL pointer dereference (CVE-2014-0198)

      SSL_MODE_RELEASE_BUFFERS session injection or denial of service (CVE-2010-5298)

      Anonymous ECDH denial of service (CVE-2014-3470)

Can you help me to confirm the above question?

Accepted Solutions (0)

Answers (1)

Answers (1)

Former Member
0 Kudos

You have clearly double posted this question in two groups.

So the first question goes back to you.

Are you Running SAP Applications on ASE, if so this is not the proper group?