{"id":"CVE-2009-5009","details":"Double free vulnerability in OpenConnect before 1.40 might allow remote AnyConnect SSL VPN servers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted DTLS Cipher option during a reconnect operation.","modified":"2026-04-10T03:41:02.035004Z","published":"2010-10-14T05:52:19Z","references":[{"type":"WEB","url":"http://www.infradead.org/openconnect.html"}],"schema_version":"1.7.5"}