← back
CVE-2008-0226

CVE-2008-0226

60Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 92%
from disclosure to weapon0 days
Published on NVDJan 10
1st PoCJan 4
metasploitJan 4
exploitation probability
92%top 1% of all CVEs
observed exploitation
nono source reports it
3 public exploit(s)
Multiple buffer overflows in yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allow remote attackers to execute arbitrary code via (1) the ProcessOldClientHello function in handshake.cpp or (2) "input_buffer& operator>>" in yassl_imp.cpp.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.