Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:29418
HistoryFeb 17, 2021 - 6:09 p.m.

Denial Of Service (DoS)

2021-02-1718:09:31
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15

0.008 Low

EPSS

Percentile

82.3%

openssl is vulnerable to denial of service (DoS). The vulnerability exists through calls to EVP_CipherUpdate, EVP_EncryptUpdate and EVP_DecryptUpdate that may overflow the output length argument in some cases where the input length is close to the maximum permissable length for an integer on the platform.

References