CVE-2009-1379

OpenSSL 1.0.0 Beta 2 - Use-After-Free in DTLS Fragment Retrieval

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2009-1379. PoCs published by Jon Oberheide.

AI-analyzed exploit summary This exploit targets a memory exhaustion vulnerability in OpenSSL's DTLS implementation (CVE-2009-1378). It sends out-of-sequence handshake messages to exhaust memory on the target server.

Description

Use-after-free vulnerability in the dtls1_retrieve_buffered_fragment function in ssl/d1_both.c in OpenSSL 1.0.0 Beta 2 allows remote attackers to cause a denial of service (openssl s_client crash) and possibly have unspecified other impact via a DTLS packet, as demonstrated by a packet from a server that uses a crafted server certificate.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Jon Oberheide · cdosmultiple
https://www.exploit-db.com/exploits/8720

This exploit targets a memory exhaustion vulnerability in OpenSSL's DTLS implementation (CVE-2009-1378). It sends out-of-sequence handshake messages to exhaust memory on the target server.

Classification
Working Poc 100%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: OpenSSL <= 0.9.8k, 1.0.0-beta2
No auth needed
Prerequisites: Network access to the target DTLS server
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (32)

Core 32
Core References
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/42724
Various Sources x_refsource_misc
https://launchpad.net/bugs/cve/2009-1379
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/38794
Various Sources mailing-list x_refsource_mlist
http://lists.vmware.com/pipermail/security-announce/2010/000082.html
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2009/1377
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/35729
Third Party Advisory vendor-advisory x_refsource_gentoo
http://security.gentoo.org/glsa/glsa-200912-01.xml
Vendor Advisory vendor-advisory x_refsource_redhat
http://www.redhat.com/support/errata/RHSA-2009-1335.html
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/38761
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/37003
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/36533
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1022241
Vendor Advisory vendor-advisory x_refsource_ubuntu
http://www.ubuntu.com/usn/USN-792-1
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9744
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/50661
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/35138
Mailing List mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2009/05/18/4
Vendor Advisory vendor-advisory x_refsource_netbsd
ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2009-009.txt.asc
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/38834
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/35461
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/35571
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6848
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/35416
Various Sources x_refsource_confirm
https://kb.bluecoat.com/index?page=content&id=SA50
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/42733
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2010/0528

Scores

EPSS 0.1824
EPSS Percentile 96.8%

Details

CWE
CWE-399
Status published
Products (1)
openssl/openssl 1.0.0 beta2
Published May 19, 2009
Tracked Since Feb 18, 2026