Immune Systems:
* VMWare ESXi
* VMWare ESX version 3.5
* VMWare ESX version 3.0.3
* VMWare ESX version 2.5.5
* VMWare vMA version 4.0 on RHEL5 (Patch 3)
Multiple denial of service flaws were discovered in OpenSSL's DTLS implementation. A remote attacker could use these flaws to cause a DTLS server to use excessive amounts of memory, or crash on an invalid memory access or NULL pointer dereference.
An input validation flaw was found in the handling of the BMPString and UniversalString ASN1 string types in OpenSSL's ASN1_STRING_print_ex() function. An attacker could use this flaw to create a specially-crafted X.509 certificate that could cause applications using the affected function to crash when printing certificate contents.