Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:3555
HistoryFeb 10, 2017 - 2:46 a.m.

Denial Of Service (DoS)

2017-02-1002:46:51
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13

0.944 High

EPSS

Percentile

99.2%

OpenSSL is vulnerable to denial of service (DoS) attacks. These attacks are possible because the ASN1_TYPE_cmp function doesn’t correctly perform boolean-type comparisons allowing attacks to trigger invalid read operation and application crash through the use of an X.509 certificates.

References