CVE Database
/

CVE-2016-0797

Back to search

CVE-2016-0797

Published: Mar 3, 2016

Modified: Aug 5, 2024

PUBLISHED

Description

Multiple integer overflows in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g allow remote attackers to cause a denial of service (heap memory corruption or NULL pointer dereference) or possibly have unspecified other impact via a long digit string that is mishandled by the (1) BN_dec2bn or (2) BN_hex2bn function, related to crypto/bn/bn.h and crypto/bn/bn_print.c.

VendorProductVersions

n/a

n/a

affected
n/a

References

83763
vdb-entry
openSUSE-SU-2016:0638
vendor-advisory
FreeBSD-SA-16:12
vendor-advisory
openSUSE-SU-2016:1239
vendor-advisory
SUSE-SU-2016:0621
vendor-advisory
openSUSE-SU-2016:0640
vendor-advisory
HPSBGN03563
vendor-advisory
USN-2914-1
vendor-advisory
SUSE-SU-2016:1057
vendor-advisory
openSUSE-SU-2016:1566
vendor-advisory
openSUSE-SU-2016:1241
vendor-advisory
openSUSE-SU-2016:0720
vendor-advisory
SUSE-SU-2016:0624
vendor-advisory
DSA-3500
vendor-advisory
SUSE-SU-2016:0631
vendor-advisory
91787
vdb-entry
SUSE-SU-2016:0617
vendor-advisory
RHSA-2016:2957
vendor-advisory
GLSA-201603-15
vendor-advisory
openSUSE-SU-2016:0628
vendor-advisory
1035133
vdb-entry
SUSE-SU-2016:0678
vendor-advisory
SUSE-SU-2016:0620
vendor-advisory
openSUSE-SU-2016:0637
vendor-advisory
openSUSE-SU-2016:0627
vendor-advisory
SUSE-SU-2016:0641
vendor-advisory

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now