Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4352-7f73-983c

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

OpenSSL 0.9.6 and 0.9.7 does not properly track the number of characters in certain ASN.1 inputs, which allows remote attackers to cause a denial of service (crash) via an SSL client certificate that causes OpenSSL to read past the end of a buffer when the long form is used.

OpenSSL 0.9.6 and 0.9.7 does not properly track the number of characters in certain ASN.1 inputs, which allows remote attackers to cause a denial of service (crash) via an SSL client certificate that causes OpenSSL to read past the end of a buffer when the long form is used.

EPSS

Процентиль: 96%
0.26187
Средний

Связанные уязвимости

ubuntu
больше 21 года назад

Описание отсутствует

redhat
больше 21 года назад

OpenSSL 0.9.6 and 0.9.7 does not properly track the number of characters in certain ASN.1 inputs, which allows remote attackers to cause a denial of service (crash) via an SSL client certificate that causes OpenSSL to read past the end of a buffer when the long form is used.

nvd
больше 21 года назад

OpenSSL 0.9.6 and 0.9.7 does not properly track the number of characters in certain ASN.1 inputs, which allows remote attackers to cause a denial of service (crash) via an SSL client certificate that causes OpenSSL to read past the end of a buffer when the long form is used.

debian
больше 21 года назад

OpenSSL 0.9.6 and 0.9.7 does not properly track the number of characte ...

fstec
больше 21 года назад

Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 96%
0.26187
Средний