RULE(RULE ID:708542)

Rule General Information
Release Date: 2016-03-07
Rule Name: Openssl DTLS SRTP Extension Parsing Denial of Service Vulnerability -3 (CVE-2014-3513)
Severity:
CVE ID:
Rule Protection Details
Description: Memory leak in d1_srtp.c in the DTLS SRTP extension in OpenSSL 1.0.1 before 1.0.1j allows remote attackers to cause a denial of service (memory consumption) via a crafted handshake message.
Impact: An attacker can launch a denial of service attack by exploiting the vulnerability successfully.
Affected OS: Solaris, Other Unix, FreeBSD, Linux
Reference: SecurityFocusBID:70584
SecurityTrackerID:1031052
Solutions
More advisories have been published on the website, please visit for more suggestions:
https://www.openssl.org/news/secadv_20141015.txt