Lucene search

K
alpinelinuxAlpine Linux Development TeamALPINE:CVE-2021-41581
HistorySep 24, 2021 - 3:15 a.m.

CVE-2021-41581

2021-09-2403:15:00
Alpine Linux Development Team
security.alpinelinux.org
17
cve-2021-41581
x509_constraints_parse_mailbox
libcrypto
buffer over-read
libressl
domain_part_max_len
unix

EPSS

0.001

Percentile

23.5%

x509_constraints_parse_mailbox in lib/libcrypto/x509/x509_constraints.c in LibreSSL through 3.4.0 has a stack-based buffer over-read. When the input exceeds DOMAIN_PART_MAX_LEN, the buffer lacks ‘\0’ termination.

EPSS

0.001

Percentile

23.5%

Related for ALPINE:CVE-2021-41581