AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2011-3210

MEDIUM · CVSS 5 EPSS 4.56%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2011-09-22 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.0. It affects OpenSSL. It may be remotely exploitable. It may lead to a denial-of-service condition.

CVE
CVE-2011-3210
Severity
MEDIUM
CVSS
5
EPSS
4.56%
OpenSSL

Original NVD Description

The ephemeral ECDH ciphersuite functionality in OpenSSL 0.9.8 through 0.9.8r and 1.0.x before 1.0.0e does not ensure thread safety during processing of handshake messages from clients, which allows remote attackers to cause a denial of service (daemon crash) via out-of-order messages that violate the TLS protocol.