← العودة للجدول
CVE-2015-5334
CVE-2015-5334 — Off-by-one error in the OBJ_obj2txt function in LibreSSL before 2.3.1 allows rem
📅 2020-01-23
🔴 Critical 🔥 No NVD DDoS DDoS CVSS 9.8

📋 الوصف الكامل

Off-by-one error in the OBJ_obj2txt function in LibreSSL before 2.3.1 allows remote attackers to cause a denial of service (program crash) or possible execute arbitrary code via a crafted X.509 certificate, which triggers a stack-based buffer overflow. Note: this vulnerability exists because of an incorrect fix for CVE-2014-3508.

💻 الأنظمة المتأثرة

Off-by-one error in

⚠️ نوع التهديد

DDoS

🔗 CVE ID

CVE-2015-5334

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2015-5334 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←