The TCP/IP networking module in Unisys ClearPath MCP systems with TCP-IP-SW 57.1 before 57.152, 58.1 before 58.142, or 59.1 before 59.172, when running a TLS 1.2 service, allows remote attackers to cause a denial of service (network connectivity disruption) via a client hello with a signature_algorithms extension above those defined in RFC 5246, which triggers a full memory dump.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2017-03-10T02:00:00

Updated: 2017-03-13T09:57:01

Reserved: 2017-02-02T00:00:00


Link: CVE-2017-5872

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2017-03-10T02:59:00.213

Modified: 2017-03-16T15:20:34.467


Link: CVE-2017-5872

JSON object: View

cve-icon Redhat Information

No data.

CWE