CVE-2014-3513: OpenSSL
High severity, CVSS 7.1. EPSS: 37.1% chance of exploitation in the next 30 days.
Memory leak in d1_srtp.c in the DTLS SRTP extension in OpenSSL 1.0.1 before 1.0.1j allows remote attackers to cause a denial of service (memory consumption) via a crafted handshake message.
Affected products
- OpenSSL OpenSSL: version 1.0.1 only; version 1.0.1a only; version 1.0.1b only; version 1.0.1c only; version 1.0.1d only; version 1.0.1e only; …
Published 2014-10-19. Last modified 2026-06-17.