Количество 21
Количество 21

CVE-2014-3508
The OBJ_obj2txt function in crypto/objects/obj_dat.c in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i, when pretty printing is used, does not ensure the presence of '\0' characters, which allows context-dependent attackers to obtain sensitive information from process stack memory by reading output from X509_name_oneline, X509_name_print_ex, and unspecified other functions.

CVE-2014-3508
The OBJ_obj2txt function in crypto/objects/obj_dat.c in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i, when pretty printing is used, does not ensure the presence of '\0' characters, which allows context-dependent attackers to obtain sensitive information from process stack memory by reading output from X509_name_oneline, X509_name_print_ex, and unspecified other functions.

CVE-2014-3508
The OBJ_obj2txt function in crypto/objects/obj_dat.c in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i, when pretty printing is used, does not ensure the presence of '\0' characters, which allows context-dependent attackers to obtain sensitive information from process stack memory by reading output from X509_name_oneline, X509_name_print_ex, and unspecified other functions.
CVE-2014-3508
The OBJ_obj2txt function in crypto/objects/obj_dat.c in OpenSSL 0.9.8 ...
GHSA-5fxv-32q4-g2fh
The OBJ_obj2txt function in crypto/objects/obj_dat.c in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i, when pretty printing is used, does not ensure the presence of '\0' characters, which allows context-dependent attackers to obtain sensitive information from process stack memory by reading output from X509_name_oneline, X509_name_print_ex, and unspecified other functions.

BDU:2015-00649
Уязвимость программного обеспечения OpenSSL, позволяющая удаленному злоумышленнику нарушить конфиденциальность защищаемой информации
ELSA-2014-1053
ELSA-2014-1053: openssl security update (MODERATE)
ELSA-2014-1052
ELSA-2014-1052: openssl security update (MODERATE)

SUSE-SU-2015:1183-1
Security update for compat-openssl097g

SUSE-SU-2015:0578-1
Security update for compat-openssl097g

SUSE-SU-2015:0543-1
Security update for compat-openssl097g

SUSE-SU-2015:0182-2
Security update for compat-openssl097g

SUSE-SU-2015:1182-2
Security update for OpenSSL

SUSE-SU-2015:0545-2
Security update for OpenSSL

SUSE-SU-2015:1184-2
Security update for OpenSSL

SUSE-SU-2015:0545-1
Security update for OpenSSL

openSUSE-SU-2016:0640-1
Security update for libopenssl0_9_8

SUSE-SU-2015:1185-1
Security update for openssl1

SUSE-SU-2015:0546-1
Security update for openssl1

SUSE-RU-2015:0769-1
Security update for openssl1
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2014-3508 The OBJ_obj2txt function in crypto/objects/obj_dat.c in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i, when pretty printing is used, does not ensure the presence of '\0' characters, which allows context-dependent attackers to obtain sensitive information from process stack memory by reading output from X509_name_oneline, X509_name_print_ex, and unspecified other functions. | CVSS2: 4.3 | 3% Низкий | почти 11 лет назад |
![]() | CVE-2014-3508 The OBJ_obj2txt function in crypto/objects/obj_dat.c in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i, when pretty printing is used, does not ensure the presence of '\0' characters, which allows context-dependent attackers to obtain sensitive information from process stack memory by reading output from X509_name_oneline, X509_name_print_ex, and unspecified other functions. | CVSS2: 4.3 | 3% Низкий | почти 11 лет назад |
![]() | CVE-2014-3508 The OBJ_obj2txt function in crypto/objects/obj_dat.c in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i, when pretty printing is used, does not ensure the presence of '\0' characters, which allows context-dependent attackers to obtain sensitive information from process stack memory by reading output from X509_name_oneline, X509_name_print_ex, and unspecified other functions. | CVSS2: 4.3 | 3% Низкий | почти 11 лет назад |
CVE-2014-3508 The OBJ_obj2txt function in crypto/objects/obj_dat.c in OpenSSL 0.9.8 ... | CVSS2: 4.3 | 3% Низкий | почти 11 лет назад | |
GHSA-5fxv-32q4-g2fh The OBJ_obj2txt function in crypto/objects/obj_dat.c in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i, when pretty printing is used, does not ensure the presence of '\0' characters, which allows context-dependent attackers to obtain sensitive information from process stack memory by reading output from X509_name_oneline, X509_name_print_ex, and unspecified other functions. | 3% Низкий | около 3 лет назад | ||
![]() | BDU:2015-00649 Уязвимость программного обеспечения OpenSSL, позволяющая удаленному злоумышленнику нарушить конфиденциальность защищаемой информации | CVSS2: 4.3 | 3% Низкий | почти 11 лет назад |
ELSA-2014-1053 ELSA-2014-1053: openssl security update (MODERATE) | почти 11 лет назад | |||
ELSA-2014-1052 ELSA-2014-1052: openssl security update (MODERATE) | почти 11 лет назад | |||
![]() | SUSE-SU-2015:1183-1 Security update for compat-openssl097g | почти 13 лет назад | ||
![]() | SUSE-SU-2015:0578-1 Security update for compat-openssl097g | почти 13 лет назад | ||
![]() | SUSE-SU-2015:0543-1 Security update for compat-openssl097g | почти 13 лет назад | ||
![]() | SUSE-SU-2015:0182-2 Security update for compat-openssl097g | почти 13 лет назад | ||
![]() | SUSE-SU-2015:1182-2 Security update for OpenSSL | больше 10 лет назад | ||
![]() | SUSE-SU-2015:0545-2 Security update for OpenSSL | больше 10 лет назад | ||
![]() | SUSE-SU-2015:1184-2 Security update for OpenSSL | около 12 лет назад | ||
![]() | SUSE-SU-2015:0545-1 Security update for OpenSSL | около 12 лет назад | ||
![]() | openSUSE-SU-2016:0640-1 Security update for libopenssl0_9_8 | больше 9 лет назад | ||
![]() | SUSE-SU-2015:1185-1 Security update for openssl1 | больше 10 лет назад | ||
![]() | SUSE-SU-2015:0546-1 Security update for openssl1 | больше 10 лет назад | ||
![]() | SUSE-RU-2015:0769-1 Security update for openssl1 | больше 10 лет назад |
Уязвимостей на страницу