Back to search
CVE-2016-0799
Published: Mar 3, 2016
Modified: Aug 5, 2024
PUBLISHED
Description
The fmtstr function in crypto/bio/b_print.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g improperly calculates string lengths, which allows remote attackers to cause a denial of service (overflow and out-of-bounds read) or possibly have unspecified other impact via a long string, as demonstrated by a large amount of ASN.1 data, a different vulnerability than CVE-2016-2842.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
83755
vdb-entry
FEDORA-2016-2802690366
vendor-advisory
RHSA-2016:2073
vendor-advisory
FEDORA-2016-e6807b3394
vendor-advisory
HPSBMU03575
vendor-advisory
openSUSE-SU-2016:0638
vendor-advisory
FreeBSD-SA-16:12
vendor-advisory
openSUSE-SU-2016:1239
vendor-advisory
SUSE-SU-2016:0621
vendor-advisory
openSUSE-SU-2016:0640
vendor-advisory
HPSBGN03569
vendor-advisory
USN-2914-1
vendor-advisory
SUSE-SU-2016:1057
vendor-advisory
openSUSE-SU-2016:1241
vendor-advisory
openSUSE-SU-2016:0720
vendor-advisory
SUSE-SU-2016:0624
vendor-advisory
DSA-3500
vendor-advisory
RHSA-2016:0996
vendor-advisory
SUSE-SU-2016:0631
vendor-advisory
91787
vdb-entry
SUSE-SU-2016:0617
vendor-advisory
RHSA-2016:2957
vendor-advisory
GLSA-201603-15
vendor-advisory
openSUSE-SU-2016:0628
vendor-advisory
1035133
vdb-entry
RHSA-2016:0722
vendor-advisory
SUSE-SU-2016:0678
vendor-advisory
SUSE-SU-2016:0620
vendor-advisory
openSUSE-SU-2016:0637
vendor-advisory
SUSE-SU-2016:0641
vendor-advisory
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now