CVE-2016-7052
CVE-2016-7052
crypto/x509/x509_vfy.c in OpenSSL 1.0.2i allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) by triggering a CRL operation.
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10759http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00013.htmlhttps://bto.bluecoat.com/security-advisory/sa132https://git.openssl.org/?p=openssl.git%3Ba=commit%3Bh=6e629b5be45face20b4ca71c4fcbfed78b864a2ehttps://kc.mcafee.com/corporate/index?page=content&id=SB10171https://security.FreeBSD.org/advisories/FreeBSD-SA-16:27.openssl.aschttps://security.gentoo.org/glsa/201612-16https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03856en_ushttps://www.openssl.org/news/secadv/20160926.txthttps://www.tenable.com/security/tns-2016-16https://www.tenable.com/security/tns-2016-19https://www.tenable.com/security/tns-2016-20