Lucene search

K
f5F5F5:K02652550
HistoryNov 14, 2016 - 12:00 a.m.

K02652550 : OpenSSL vulnerability CVE-2016-2180

2016-11-1400:00:00
my.f5.com
26

AI Score

8.2

Confidence

High

EPSS

0.206

Percentile

96.4%

Security Advisory Description

The TS_OBJ_print_bio function in crypto/ts/ts_lib.c in the X.509 Public Key Infrastructure Time-Stamp Protocol (TSP) implementation in OpenSSL through 1.0.2h allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted time-stamp file that is mishandled by the “openssl ts” command. (CVE-2016-2180)

Impact

An attacker may be able to disrupt service.