Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
Cyassl
MEDIUM 5.8
CVE-2014-2900
wolfSSL CyaSSL before 2.9.4 does not properly validate X.509 certificates with unknown critical extensions, which allows man-in-the-middle attackers …
Fix: after 2.9.0
Fix from $1,600
2014-04-22
Cyassl
MEDIUM 5.0
CVE-2014-2899
wolfSSL CyaSSL before 2.9.4 allows remote attackers to cause a denial of service (NULL pointer dereference) via (1) a request for the peer certificat…
Fix: after 2.9.0
Fix from $1,600
2014-04-22
Cyassl
MEDIUM 5.0
CVE-2012-1558
yaSSL CyaSSL before 2.0.8 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted X.509 c…
Fix: after 2.0.6
Fix from $1,600
2012-03-12
Yassl
HIGH 7.5
CVE-2008-0227
yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allows remote attackers to cause a denial of service (crash) via a Hello packe…
Fix: after 1.7.5
Fix from $1,950
2008-01-10
Yassl
HIGH 10.0
CVE-2005-3731
Unspecified vulnerability in yaSSL before 1.0.6 has unknown impact and attack vectors, related to "certificate chain processing."
Patch available
Fix from $1,950
2005-11-21