Lucene search

K
osvGoogleOSV:USN-4662-1
HistoryDec 08, 2020 - 3:27 p.m.

openssl, openssl1.0 vulnerability

2020-12-0815:27:02
Google
osv.dev
1

5.8 Medium

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

74.4%

David Benjamin discovered that OpenSSL incorrectly handled comparing
certificates containing a EDIPartyName name type. A remote attacker could
possibly use this issue to cause OpenSSL to crash, resulting in a denial of
service.