Количество 46
Количество 46
SUSE-SU-2024:2088-1
Security update for openssl-3
SUSE-SU-2024:2059-1
Security update for openssl-1_1
SUSE-SU-2024:2051-1
Security update for openssl-1_1
SUSE-SU-2024:2036-1
Security update for openssl-1_1
SUSE-SU-2024:2035-1
Security update for openssl-1_1
SUSE-SU-2024:2020-1
Security update for openssl-3
ROS-20240704-04
Уязвимость openssl3
GHSA-6vgq-8qjq-h578
Issue summary: Calling the OpenSSL API function SSL_free_buffers may cause memory to be accessed that was previously freed in some situations Impact summary: A use after free can have a range of potential consequences such as the corruption of valid data, crashes or execution of arbitrary code. However, only applications that directly call the SSL_free_buffers function are affected by this issue. Applications that do not call this function are not vulnerable. Our investigations indicate that this function is rarely used by applications. The SSL_free_buffers function is used to free the internal OpenSSL buffer used when processing an incoming record from the network. The call is only expected to succeed if the buffer is not currently in use. However, two scenarios have been identified where the buffer is freed even when still in use. The first scenario occurs where a record header has been received from the network and processed by OpenSSL, but the full record body has not yet arr...
BDU:2024-05176
Уязвимость функции SSL_free_buffers() криптографической библиотеки OpenSSL, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании
SUSE-SU-2025:03632-1
Security update for openssl-1_1-livepatches
SUSE-SU-2025:03523-1
Security update for openssl-1_1-livepatches
SUSE-SU-2024:2066-1
Security update for openssl-3
SUSE-SU-2026:2411-1
Security update for openssl-3-livepatches
RLSA-2024:9333
Low: openssl and openssl-fips-provider security update
ELSA-2024-9333
ELSA-2024-9333: openssl and openssl-fips-provider security update (LOW)
SUSE-SU-2026:2405-1
Security update for openssl-1_1
SUSE-SU-2026:2404-1
Security update for openssl-1_1
SUSE-SU-2026:2403-1
Security update for openssl-1_1
SUSE-SU-2026:2392-1
Security update for openssl-1_1
ROS-20251028-08
Множественные уязвимости edk2-tools
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
SUSE-SU-2024:2088-1 Security update for openssl-3 | 3% Низкий | около 2 лет назад | ||
SUSE-SU-2024:2059-1 Security update for openssl-1_1 | 3% Низкий | около 2 лет назад | ||
SUSE-SU-2024:2051-1 Security update for openssl-1_1 | 3% Низкий | около 2 лет назад | ||
SUSE-SU-2024:2036-1 Security update for openssl-1_1 | 3% Низкий | около 2 лет назад | ||
SUSE-SU-2024:2035-1 Security update for openssl-1_1 | 3% Низкий | около 2 лет назад | ||
SUSE-SU-2024:2020-1 Security update for openssl-3 | 3% Низкий | около 2 лет назад | ||
ROS-20240704-04 Уязвимость openssl3 | CVSS3: 8.1 | 3% Низкий | около 2 лет назад | |
GHSA-6vgq-8qjq-h578 Issue summary: Calling the OpenSSL API function SSL_free_buffers may cause memory to be accessed that was previously freed in some situations Impact summary: A use after free can have a range of potential consequences such as the corruption of valid data, crashes or execution of arbitrary code. However, only applications that directly call the SSL_free_buffers function are affected by this issue. Applications that do not call this function are not vulnerable. Our investigations indicate that this function is rarely used by applications. The SSL_free_buffers function is used to free the internal OpenSSL buffer used when processing an incoming record from the network. The call is only expected to succeed if the buffer is not currently in use. However, two scenarios have been identified where the buffer is freed even when still in use. The first scenario occurs where a record header has been received from the network and processed by OpenSSL, but the full record body has not yet arr... | CVSS3: 7.5 | 3% Низкий | больше 1 года назад | |
BDU:2024-05176 Уязвимость функции SSL_free_buffers() криптографической библиотеки OpenSSL, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании | CVSS3: 8.1 | 3% Низкий | около 2 лет назад | |
SUSE-SU-2025:03632-1 Security update for openssl-1_1-livepatches | 10 месяцев назад | |||
SUSE-SU-2025:03523-1 Security update for openssl-1_1-livepatches | 10 месяцев назад | |||
SUSE-SU-2024:2066-1 Security update for openssl-3 | около 2 лет назад | |||
SUSE-SU-2026:2411-1 Security update for openssl-3-livepatches | около 2 месяцев назад | |||
RLSA-2024:9333 Low: openssl and openssl-fips-provider security update | больше 1 года назад | |||
ELSA-2024-9333 ELSA-2024-9333: openssl and openssl-fips-provider security update (LOW) | больше 1 года назад | |||
SUSE-SU-2026:2405-1 Security update for openssl-1_1 | около 2 месяцев назад | |||
SUSE-SU-2026:2404-1 Security update for openssl-1_1 | около 2 месяцев назад | |||
SUSE-SU-2026:2403-1 Security update for openssl-1_1 | около 2 месяцев назад | |||
SUSE-SU-2026:2392-1 Security update for openssl-1_1 | около 2 месяцев назад | |||
ROS-20251028-08 Множественные уязвимости edk2-tools | CVSS3: 8.1 | 9 месяцев назад |
Уязвимостей на страницу