Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-3207

Опубликовано: 22 сент. 2011
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 5

Описание

crypto/x509/x509_vfy.c in OpenSSL 1.0.x before 1.0.0e does not initialize certain structure members, which makes it easier for remote attackers to bypass CRL validation by using a nextUpdate value corresponding to a time in the past.

РелизСтатусПримечание
devel

not-affected

1.0.0e-2ubuntu1
hardy

not-affected

lucid

not-affected

maverick

not-affected

natty

not-affected

upstream

released

1.0.0e

Показывать по

EPSS

Процентиль: 85%
0.02474
Низкий

5 Medium

CVSS2

Связанные уязвимости

redhat
почти 14 лет назад

crypto/x509/x509_vfy.c in OpenSSL 1.0.x before 1.0.0e does not initialize certain structure members, which makes it easier for remote attackers to bypass CRL validation by using a nextUpdate value corresponding to a time in the past.

nvd
почти 14 лет назад

crypto/x509/x509_vfy.c in OpenSSL 1.0.x before 1.0.0e does not initialize certain structure members, which makes it easier for remote attackers to bypass CRL validation by using a nextUpdate value corresponding to a time in the past.

debian
почти 14 лет назад

crypto/x509/x509_vfy.c in OpenSSL 1.0.x before 1.0.0e does not initial ...

github
около 3 лет назад

crypto/x509/x509_vfy.c in OpenSSL 1.0.x before 1.0.0e does not initialize certain structure members, which makes it easier for remote attackers to bypass CRL validation by using a nextUpdate value corresponding to a time in the past.

oracle-oval
почти 14 лет назад

ELSA-2011-1409: openssl security update (MODERATE)

EPSS

Процентиль: 85%
0.02474
Низкий

5 Medium

CVSS2