Lucene search

K
f5F5F5:K01276005
HistoryNov 04, 2016 - 12:00 a.m.

K01276005 : OpenSSL vulnerability CVE-2016-2182

2016-11-0400:00:00
my.f5.com
24

AI Score

9.2

Confidence

High

EPSS

0.52

Percentile

97.6%

Security Advisory Description

The BN_bn2dec function in crypto/bn/bn_print.c in OpenSSL before 1.1.0 does not properly validate division results, which allows remote attackers to cause a denial of service (out-of-bounds write and application crash) or possibly have unspecified other impact via unknown vectors. (CVE-2016-2182)
Impact
This vulnerability allows unauthorized disclosure of information, unauthorized modification, and disruption of service.