Lucene search

K
f5F5F5:K35543324
HistoryOct 04, 2016 - 12:00 a.m.

K35543324 : OpenSSL vulnerability CVE-2016-6303

2016-10-0400:00:00
my.f5.com
48

AI Score

8.8

Confidence

High

EPSS

0.289

Percentile

96.9%

Security Advisory Description

Integer overflow in the MDC2_Update function in crypto/mdc2/mdc2dgst.c in OpenSSL before 1.1.0 allows remote attackers to cause a denial of service (out-of-bounds write and application crash) or possibly have unspecified other impact via unknown vectors. (CVE-2016-6303)

Impact

This vulnerability allows unauthorized disclosure of information, unauthorized modification, and disruption of service.