Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:11701
HistoryJan 15, 2019 - 9:06 a.m.

Denial Of Service (DoS)

2019-01-1509:06:24
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14

0.332 Low

EPSS

Percentile

97.1%

OpenSSL is vulnerable to denial of service (DoS) attacks. These attacks can be triggered through the length field in ASN1_TIME data via X509_cmp_time function in crypto/x509/x509_vfy.c, causing an out-of-bounds read and an application crash.

References