OpenSSL 0.9.7 before 0.9.7l and 0.9.8 before 0.9.8d allows remote attackers to cause a denial of service (infinite loop and memory consumption) via malformed ASN.1 structures that trigger an improperly handled error condition.
Weakness Type (CWE)
Vulnerable Products 16
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Openssl Openssl
cpe:2.3:a:openssl:openssl:0.9.7:*:*:*:*:*:*:*
|
— | — |
|
Openssl Openssl
cpe:2.3:a:openssl:openssl:0.9.7a:*:*:*:*:*:*:*
|
— | — |
|
Openssl Openssl
cpe:2.3:a:openssl:openssl:0.9.7b:*:*:*:*:*:*:*
|
— | — |
|
Openssl Openssl
cpe:2.3:a:openssl:openssl:0.9.7c:*:*:*:*:*:*:*
|
— | — |
|
Openssl Openssl
cpe:2.3:a:openssl:openssl:0.9.7d:*:*:*:*:*:*:*
|
— | — |
|
Openssl Openssl
cpe:2.3:a:openssl:openssl:0.9.7e:*:*:*:*:*:*:*
|
— | — |
|
Openssl Openssl
cpe:2.3:a:openssl:openssl:0.9.7f:*:*:*:*:*:*:*
|
— | — |
|
Openssl Openssl
cpe:2.3:a:openssl:openssl:0.9.7g:*:*:*:*:*:*:*
|
— | — |
|
Openssl Openssl
cpe:2.3:a:openssl:openssl:0.9.7h:*:*:*:*:*:*:*
|
— | — |
|
Openssl Openssl
cpe:2.3:a:openssl:openssl:0.9.7i:*:*:*:*:*:*:*
|
— | — |
|
Openssl Openssl
cpe:2.3:a:openssl:openssl:0.9.7j:*:*:*:*:*:*:*
|
— | — |
|
Openssl Openssl
cpe:2.3:a:openssl:openssl:0.9.7k:*:*:*:*:*:*:*
|
— | — |
|
Openssl Openssl
cpe:2.3:a:openssl:openssl:0.9.8:*:*:*:*:*:*:*
|
— | — |
|
Openssl Openssl
cpe:2.3:a:openssl:openssl:0.9.8a:*:*:*:*:*:*:*
|
— | — |
|
Openssl Openssl
cpe:2.3:a:openssl:openssl:0.9.8b:*:*:*:*:*:*:*
|
— | — |
|
Openssl Openssl
cpe:2.3:a:openssl:openssl:0.9.8c:*:*:*:*:*:*:*
|
— | — |