Логотип exploitDog
bind:"CVE-2016-2106" OR bind:"CVE-2016-2105" OR bind:"CVE-2016-2109" OR bind:"CVE-2016-0799"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2016-2106" OR bind:"CVE-2016-2105" OR bind:"CVE-2016-2109" OR bind:"CVE-2016-0799"

Количество 57

Количество 57

fstec логотип

BDU:2020-02961

около 9 лет назад

Уязвимость функции EVP_EncodeUpdate (crypto/evp/evp_enc.c) библиотеки OpenSSL, связанная с ошибкой при обработке числа, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Средний
fstec логотип

BDU:2020-02962

около 9 лет назад

Уязвимость функции проверки заполнения реализации AES-NI библиотеки OpenSSL, позволяющая нарушителю получить несанкционированный доступ к конфиденциальным данным

CVSS3: 5.9
EPSS: Средний
ubuntu логотип

CVE-2016-2105

около 9 лет назад

Integer overflow in the EVP_EncodeUpdate function in crypto/evp/encode.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (heap memory corruption) via a large amount of binary data.

CVSS3: 7.5
EPSS: Средний
redhat логотип

CVE-2016-2105

около 9 лет назад

Integer overflow in the EVP_EncodeUpdate function in crypto/evp/encode.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (heap memory corruption) via a large amount of binary data.

CVSS3: 5.6
EPSS: Средний
nvd логотип

CVE-2016-2105

около 9 лет назад

Integer overflow in the EVP_EncodeUpdate function in crypto/evp/encode.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (heap memory corruption) via a large amount of binary data.

CVSS3: 7.5
EPSS: Средний
debian логотип

CVE-2016-2105

около 9 лет назад

Integer overflow in the EVP_EncodeUpdate function in crypto/evp/encode ...

CVSS3: 7.5
EPSS: Средний
suse-cvrf логотип

SUSE-SU-2017:2699-1

больше 7 лет назад

Security update for SLES 12 Docker image

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:2700-1

больше 7 лет назад

Security update for SLES 12-SP1 Docker image

EPSS: Низкий
github логотип

GHSA-rh28-x46h-8pcg

около 3 лет назад

Integer overflow in the EVP_EncodeUpdate function in crypto/evp/encode.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (heap memory corruption) via a large amount of binary data.

CVSS3: 7.5
EPSS: Средний
fstec логотип

BDU:2020-02960

около 9 лет назад

Уязвимость функции EVP_EncodeUpdate (crypto/evp/encode.c) библиотеки OpenSSL, связанная с ошибкой при обработке числа, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Средний
ubuntu логотип

CVE-2016-2109

около 9 лет назад

The asn1_d2i_read_bio function in crypto/asn1/a_d2i_fp.c in the ASN.1 BIO implementation in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (memory consumption) via a short invalid encoding.

CVSS3: 7.5
EPSS: Средний
redhat логотип

CVE-2016-2109

около 9 лет назад

The asn1_d2i_read_bio function in crypto/asn1/a_d2i_fp.c in the ASN.1 BIO implementation in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (memory consumption) via a short invalid encoding.

CVSS3: 4
EPSS: Средний
nvd логотип

CVE-2016-2109

около 9 лет назад

The asn1_d2i_read_bio function in crypto/asn1/a_d2i_fp.c in the ASN.1 BIO implementation in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (memory consumption) via a short invalid encoding.

CVSS3: 7.5
EPSS: Средний
debian логотип

CVE-2016-2109

около 9 лет назад

The asn1_d2i_read_bio function in crypto/asn1/a_d2i_fp.c in the ASN.1 ...

CVSS3: 7.5
EPSS: Средний
ubuntu логотип

CVE-2016-0799

больше 9 лет назад

The fmtstr function in crypto/bio/b_print.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g improperly calculates string lengths, which allows remote attackers to cause a denial of service (overflow and out-of-bounds read) or possibly have unspecified other impact via a long string, as demonstrated by a large amount of ASN.1 data, a different vulnerability than CVE-2016-2842.

CVSS3: 9.8
EPSS: Средний
redhat логотип

CVE-2016-0799

больше 9 лет назад

The fmtstr function in crypto/bio/b_print.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g improperly calculates string lengths, which allows remote attackers to cause a denial of service (overflow and out-of-bounds read) or possibly have unspecified other impact via a long string, as demonstrated by a large amount of ASN.1 data, a different vulnerability than CVE-2016-2842.

CVSS2: 2.6
EPSS: Средний
nvd логотип

CVE-2016-0799

больше 9 лет назад

The fmtstr function in crypto/bio/b_print.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g improperly calculates string lengths, which allows remote attackers to cause a denial of service (overflow and out-of-bounds read) or possibly have unspecified other impact via a long string, as demonstrated by a large amount of ASN.1 data, a different vulnerability than CVE-2016-2842.

CVSS3: 9.8
EPSS: Средний
debian логотип

CVE-2016-0799

больше 9 лет назад

The fmtstr function in crypto/bio/b_print.c in OpenSSL 1.0.1 before 1. ...

CVSS3: 9.8
EPSS: Средний
suse-cvrf логотип

openSUSE-SU-2016:1566-1

около 9 лет назад

Security update for nodejs

EPSS: Низкий
github логотип

GHSA-mq63-fmfx-8qc3

около 3 лет назад

The asn1_d2i_read_bio function in crypto/asn1/a_d2i_fp.c in the ASN.1 BIO implementation in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (memory consumption) via a short invalid encoding.

CVSS3: 7.5
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2020-02961

Уязвимость функции EVP_EncodeUpdate (crypto/evp/evp_enc.c) библиотеки OpenSSL, связанная с ошибкой при обработке числа, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
63%
Средний
около 9 лет назад
fstec логотип
BDU:2020-02962

Уязвимость функции проверки заполнения реализации AES-NI библиотеки OpenSSL, позволяющая нарушителю получить несанкционированный доступ к конфиденциальным данным

CVSS3: 5.9
63%
Средний
около 9 лет назад
ubuntu логотип
CVE-2016-2105

Integer overflow in the EVP_EncodeUpdate function in crypto/evp/encode.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (heap memory corruption) via a large amount of binary data.

CVSS3: 7.5
48%
Средний
около 9 лет назад
redhat логотип
CVE-2016-2105

Integer overflow in the EVP_EncodeUpdate function in crypto/evp/encode.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (heap memory corruption) via a large amount of binary data.

CVSS3: 5.6
48%
Средний
около 9 лет назад
nvd логотип
CVE-2016-2105

Integer overflow in the EVP_EncodeUpdate function in crypto/evp/encode.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (heap memory corruption) via a large amount of binary data.

CVSS3: 7.5
48%
Средний
около 9 лет назад
debian логотип
CVE-2016-2105

Integer overflow in the EVP_EncodeUpdate function in crypto/evp/encode ...

CVSS3: 7.5
48%
Средний
около 9 лет назад
suse-cvrf логотип
SUSE-SU-2017:2699-1

Security update for SLES 12 Docker image

больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2017:2700-1

Security update for SLES 12-SP1 Docker image

больше 7 лет назад
github логотип
GHSA-rh28-x46h-8pcg

Integer overflow in the EVP_EncodeUpdate function in crypto/evp/encode.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (heap memory corruption) via a large amount of binary data.

CVSS3: 7.5
48%
Средний
около 3 лет назад
fstec логотип
BDU:2020-02960

Уязвимость функции EVP_EncodeUpdate (crypto/evp/encode.c) библиотеки OpenSSL, связанная с ошибкой при обработке числа, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
48%
Средний
около 9 лет назад
ubuntu логотип
CVE-2016-2109

The asn1_d2i_read_bio function in crypto/asn1/a_d2i_fp.c in the ASN.1 BIO implementation in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (memory consumption) via a short invalid encoding.

CVSS3: 7.5
58%
Средний
около 9 лет назад
redhat логотип
CVE-2016-2109

The asn1_d2i_read_bio function in crypto/asn1/a_d2i_fp.c in the ASN.1 BIO implementation in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (memory consumption) via a short invalid encoding.

CVSS3: 4
58%
Средний
около 9 лет назад
nvd логотип
CVE-2016-2109

The asn1_d2i_read_bio function in crypto/asn1/a_d2i_fp.c in the ASN.1 BIO implementation in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (memory consumption) via a short invalid encoding.

CVSS3: 7.5
58%
Средний
около 9 лет назад
debian логотип
CVE-2016-2109

The asn1_d2i_read_bio function in crypto/asn1/a_d2i_fp.c in the ASN.1 ...

CVSS3: 7.5
58%
Средний
около 9 лет назад
ubuntu логотип
CVE-2016-0799

The fmtstr function in crypto/bio/b_print.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g improperly calculates string lengths, which allows remote attackers to cause a denial of service (overflow and out-of-bounds read) or possibly have unspecified other impact via a long string, as demonstrated by a large amount of ASN.1 data, a different vulnerability than CVE-2016-2842.

CVSS3: 9.8
44%
Средний
больше 9 лет назад
redhat логотип
CVE-2016-0799

The fmtstr function in crypto/bio/b_print.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g improperly calculates string lengths, which allows remote attackers to cause a denial of service (overflow and out-of-bounds read) or possibly have unspecified other impact via a long string, as demonstrated by a large amount of ASN.1 data, a different vulnerability than CVE-2016-2842.

CVSS2: 2.6
44%
Средний
больше 9 лет назад
nvd логотип
CVE-2016-0799

The fmtstr function in crypto/bio/b_print.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g improperly calculates string lengths, which allows remote attackers to cause a denial of service (overflow and out-of-bounds read) or possibly have unspecified other impact via a long string, as demonstrated by a large amount of ASN.1 data, a different vulnerability than CVE-2016-2842.

CVSS3: 9.8
44%
Средний
больше 9 лет назад
debian логотип
CVE-2016-0799

The fmtstr function in crypto/bio/b_print.c in OpenSSL 1.0.1 before 1. ...

CVSS3: 9.8
44%
Средний
больше 9 лет назад
suse-cvrf логотип
openSUSE-SU-2016:1566-1

Security update for nodejs

около 9 лет назад
github логотип
GHSA-mq63-fmfx-8qc3

The asn1_d2i_read_bio function in crypto/asn1/a_d2i_fp.c in the ASN.1 BIO implementation in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (memory consumption) via a short invalid encoding.

CVSS3: 7.5
58%
Средний
около 3 лет назад

Уязвимостей на страницу