Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-3416

Опубликовано: 08 апр. 2025
Источник: ubuntu
Приоритет: medium
CVSS3: 3.7

Описание

A flaw was found in OpenSSL's handling of the properties argument in certain functions. This vulnerability can allow use-after-free exploitation, which may result in undefined behavior or incorrect property parsing, leading to OpenSSL treating the input as an empty string.

РелизСтатусПримечание
devel

not-affected

0.10.73-1
esm-apps/focal

not-affected

code not present
esm-apps/jammy

not-affected

code not present
esm-apps/noble

released

0.10.57-1ubuntu0.1~esm1
focal

ignored

end of standard support, was needs-triage
jammy

not-affected

code not present
noble

needed

oracular

ignored

end of life, was needs-triage
plucky

ignored

end of life, was needed
questing

not-affected

0.10.72-1

Показывать по

3.7 Low

CVSS3

Связанные уязвимости

CVSS3: 3.7
redhat
10 месяцев назад

A flaw was found in OpenSSL's handling of the properties argument in certain functions. This vulnerability can allow use-after-free exploitation, which may result in undefined behavior or incorrect property parsing, leading to OpenSSL treating the input as an empty string.

CVSS3: 3.7
nvd
10 месяцев назад

A flaw was found in OpenSSL's handling of the properties argument in certain functions. This vulnerability can allow use-after-free exploitation, which may result in undefined behavior or incorrect property parsing, leading to OpenSSL treating the input as an empty string.

msrc
5 месяцев назад

Rust-openssl: rust-openssl use-after-free in `md::fetch` and `cipher::fetch`

CVSS3: 3.7
debian
10 месяцев назад

A flaw was found in OpenSSL's handling of the properties argument in c ...

suse-cvrf
9 месяцев назад

Security update for kanidm

3.7 Low

CVSS3