Lucene search

K
f5F5F5:K23873366
HistoryJul 14, 2016 - 5:37 p.m.

OpenSSL vulnerability CVE-2016-2177

2016-07-1417:37:00
support.f5.com
23

0.152 Low

EPSS

Percentile

95.9%

OpenSSL through 1.0.2h incorrectly uses pointer arithmetic for heap-buffer boundary checks, which might allow remote attackers to cause a denial of service (integer overflow and application crash) or possibly have unspecified other impact by leveraging unexpected malloc behavior, related to s3_srvr.c, ssl_sess.c, and t1_lib.c. (CVE-2016-2177)

Impact

This vulnerability may allow remote attackers to cause a denial-of-service (DoS) attack.