Secunia Logo
 
CVE Reference: CVE-2006-0999
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-0999

Description:
The SSL server implementation in NILE.NLM in Novell NetWare 6.5 and Novell Open Enterprise Server (OES) allows a client to force the server to use weak encryption by stating that a weak cipher is required for client compatibility, which might allow remote attackers to decrypt contents of an SSL protected session.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/25382

ST
  1015799

SAID
  Secunia Advisory: SA19324

OSVDB
  24048

CONFIRM
  http://support.novell.com/cgi-bin/search/searchtid.cgi?10100633.htm

BID
  17176


Return to the previous page.