Back to search
CVE-2016-2180
Published: Aug 1, 2016
Modified: Aug 5, 2024
PUBLISHED
Description
The TS_OBJ_print_bio function in crypto/ts/ts_lib.c in the X.509 Public Key Infrastructure Time-Stamp Protocol (TSP) implementation in OpenSSL through 1.0.2h allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted time-stamp file that is mishandled by the "openssl ts" command.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
1036486
vdb-entry
RHSA-2016:1940
vendor-advisory
GLSA-201612-16
vendor-advisory
FreeBSD-SA-16:26
vendor-advisory
92117
vdb-entry
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now