Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9p7f-7v7j-rq7j

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.2

Описание

The X509_NAME_oneline function in crypto/x509/x509_obj.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to obtain sensitive information from process stack memory or cause a denial of service (buffer over-read) via crafted EBCDIC ASN.1 data.

The X509_NAME_oneline function in crypto/x509/x509_obj.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to obtain sensitive information from process stack memory or cause a denial of service (buffer over-read) via crafted EBCDIC ASN.1 data.

Ссылки

EPSS

Процентиль: 92%
0.09084
Низкий

8.2 High

CVSS3

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 8.2
ubuntu
почти 10 лет назад

The X509_NAME_oneline function in crypto/x509/x509_obj.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to obtain sensitive information from process stack memory or cause a denial of service (buffer over-read) via crafted EBCDIC ASN.1 data.

redhat
почти 10 лет назад

The X509_NAME_oneline function in crypto/x509/x509_obj.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to obtain sensitive information from process stack memory or cause a denial of service (buffer over-read) via crafted EBCDIC ASN.1 data.

CVSS3: 8.2
nvd
почти 10 лет назад

The X509_NAME_oneline function in crypto/x509/x509_obj.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to obtain sensitive information from process stack memory or cause a denial of service (buffer over-read) via crafted EBCDIC ASN.1 data.

CVSS3: 8.2
debian
почти 10 лет назад

The X509_NAME_oneline function in crypto/x509/x509_obj.c in OpenSSL be ...

CVSS3: 8.2
fstec
почти 10 лет назад

Уязвимость функции X509_NAME_oneline (crypto/x509/x509_obj.c) библиотеки OpenSSL, позволяющая нарушителю получить несанкционированный доступ к конфиденциальным данным или вызвать отказ в обслуживании

EPSS

Процентиль: 92%
0.09084
Низкий

8.2 High

CVSS3

Дефекты

CWE-119