AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2009-1387

MEDIUM · CVSS 5 EPSS 10.25%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2009-06-04 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2009-1387
Severity
MEDIUM
CVSS
5
EPSS
10.25%
OpenSSL

Original NVD Description

The dtls1_retrieve_buffered_fragment function in ssl/d1_both.c in OpenSSL before 1.0.0 Beta 2 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an out-of-sequence DTLS handshake message, related to a "fragment bug."