Логотип exploitDog
bind:CVE-2015-1788
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2015-1788

Количество 17

Количество 17

ubuntu логотип

CVE-2015-1788

больше 10 лет назад

The BN_GF2m_mod_inv function in crypto/bn/bn_gf2m.c in OpenSSL before 0.9.8s, 1.0.0 before 1.0.0e, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b does not properly handle ECParameters structures in which the curve is over a malformed binary polynomial field, which allows remote attackers to cause a denial of service (infinite loop) via a session that uses an Elliptic Curve algorithm, as demonstrated by an attack against a server that supports client authentication.

CVSS2: 4.3
EPSS: Средний
redhat логотип

CVE-2015-1788

больше 10 лет назад

The BN_GF2m_mod_inv function in crypto/bn/bn_gf2m.c in OpenSSL before 0.9.8s, 1.0.0 before 1.0.0e, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b does not properly handle ECParameters structures in which the curve is over a malformed binary polynomial field, which allows remote attackers to cause a denial of service (infinite loop) via a session that uses an Elliptic Curve algorithm, as demonstrated by an attack against a server that supports client authentication.

CVSS2: 4.3
EPSS: Средний
nvd логотип

CVE-2015-1788

больше 10 лет назад

The BN_GF2m_mod_inv function in crypto/bn/bn_gf2m.c in OpenSSL before 0.9.8s, 1.0.0 before 1.0.0e, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b does not properly handle ECParameters structures in which the curve is over a malformed binary polynomial field, which allows remote attackers to cause a denial of service (infinite loop) via a session that uses an Elliptic Curve algorithm, as demonstrated by an attack against a server that supports client authentication.

CVSS2: 4.3
EPSS: Средний
debian логотип

CVE-2015-1788

больше 10 лет назад

The BN_GF2m_mod_inv function in crypto/bn/bn_gf2m.c in OpenSSL before ...

CVSS2: 4.3
EPSS: Средний
github логотип

GHSA-r4h7-cp79-4cmq

больше 3 лет назад

The BN_GF2m_mod_inv function in crypto/bn/bn_gf2m.c in OpenSSL before 0.9.8s, 1.0.0 before 1.0.0e, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b does not properly handle ECParameters structures in which the curve is over a malformed binary polynomial field, which allows remote attackers to cause a denial of service (infinite loop) via a session that uses an Elliptic Curve algorithm, as demonstrated by an attack against a server that supports client authentication.

EPSS: Средний
fstec логотип

BDU:2015-11035

больше 10 лет назад

Уязвимость функции BN_GF2m_mod_inv библиотеки OpenSSL, позволяющая нарушителю вызвать отказ в обслуживании

CVSS2: 4.3
EPSS: Средний
suse-cvrf логотип

SUSE-SU-2015:1150-1

больше 10 лет назад

Security update for compat-openssl098

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1143-1

больше 10 лет назад

Security update for openssl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1182-2

больше 11 лет назад

Security update for OpenSSL

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0545-2

больше 11 лет назад

Security update for OpenSSL

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1184-2

почти 13 лет назад

Security update for OpenSSL

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0545-1

почти 13 лет назад

Security update for OpenSSL

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2016:0640-1

почти 10 лет назад

Security update for libopenssl0_9_8

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1185-1

больше 11 лет назад

Security update for openssl1

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0546-1

больше 11 лет назад

Security update for openssl1

EPSS: Низкий
suse-cvrf логотип

SUSE-RU-2015:0769-1

больше 11 лет назад

Security update for openssl1

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1184-1

больше 11 лет назад

Security update for OpenSSL

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2015-1788

The BN_GF2m_mod_inv function in crypto/bn/bn_gf2m.c in OpenSSL before 0.9.8s, 1.0.0 before 1.0.0e, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b does not properly handle ECParameters structures in which the curve is over a malformed binary polynomial field, which allows remote attackers to cause a denial of service (infinite loop) via a session that uses an Elliptic Curve algorithm, as demonstrated by an attack against a server that supports client authentication.

CVSS2: 4.3
15%
Средний
больше 10 лет назад
redhat логотип
CVE-2015-1788

The BN_GF2m_mod_inv function in crypto/bn/bn_gf2m.c in OpenSSL before 0.9.8s, 1.0.0 before 1.0.0e, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b does not properly handle ECParameters structures in which the curve is over a malformed binary polynomial field, which allows remote attackers to cause a denial of service (infinite loop) via a session that uses an Elliptic Curve algorithm, as demonstrated by an attack against a server that supports client authentication.

CVSS2: 4.3
15%
Средний
больше 10 лет назад
nvd логотип
CVE-2015-1788

The BN_GF2m_mod_inv function in crypto/bn/bn_gf2m.c in OpenSSL before 0.9.8s, 1.0.0 before 1.0.0e, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b does not properly handle ECParameters structures in which the curve is over a malformed binary polynomial field, which allows remote attackers to cause a denial of service (infinite loop) via a session that uses an Elliptic Curve algorithm, as demonstrated by an attack against a server that supports client authentication.

CVSS2: 4.3
15%
Средний
больше 10 лет назад
debian логотип
CVE-2015-1788

The BN_GF2m_mod_inv function in crypto/bn/bn_gf2m.c in OpenSSL before ...

CVSS2: 4.3
15%
Средний
больше 10 лет назад
github логотип
GHSA-r4h7-cp79-4cmq

The BN_GF2m_mod_inv function in crypto/bn/bn_gf2m.c in OpenSSL before 0.9.8s, 1.0.0 before 1.0.0e, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b does not properly handle ECParameters structures in which the curve is over a malformed binary polynomial field, which allows remote attackers to cause a denial of service (infinite loop) via a session that uses an Elliptic Curve algorithm, as demonstrated by an attack against a server that supports client authentication.

15%
Средний
больше 3 лет назад
fstec логотип
BDU:2015-11035

Уязвимость функции BN_GF2m_mod_inv библиотеки OpenSSL, позволяющая нарушителю вызвать отказ в обслуживании

CVSS2: 4.3
15%
Средний
больше 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1150-1

Security update for compat-openssl098

больше 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1143-1

Security update for openssl

больше 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1182-2

Security update for OpenSSL

больше 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:0545-2

Security update for OpenSSL

больше 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:1184-2

Security update for OpenSSL

почти 13 лет назад
suse-cvrf логотип
SUSE-SU-2015:0545-1

Security update for OpenSSL

почти 13 лет назад
suse-cvrf логотип
openSUSE-SU-2016:0640-1

Security update for libopenssl0_9_8

почти 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1185-1

Security update for openssl1

больше 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:0546-1

Security update for openssl1

больше 11 лет назад
suse-cvrf логотип
SUSE-RU-2015:0769-1

Security update for openssl1

больше 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:1184-1

Security update for OpenSSL

больше 11 лет назад

Уязвимостей на страницу