Description
A denial of service flaw was found in OpenSSL 0.9.8, 1.0.1, 1.0.2 through 1.0.2h, and 1.1.0 in the way the TLS/SSL protocol defined processing of ALERT packets during a connection handshake. A remote attacker could use this flaw to make a TLS/SSL server consume an excessive amount of CPU and fail to accept connections from other clients.
Remediation
References
Related Vulnerabilities
WordPress Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-5487)
WordPress Plugin Cherry Services List Information Disclosure (1.4.1)
Joomla Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2021-26034)
Oracle JRE CVE-2013-5775 Vulnerability (CVE-2013-5775)
WordPress Plugin WP Photo Album Plus Cross-Site Scripting (5.4.17)