Vulnerability Database

296,147

Total vulnerabilities in the database

CVE-2009-0590

The ASN1_STRING_print_ex function in OpenSSL before 0.9.8k allows remote attackers to cause a denial of service (invalid memory access and application crash) via vectors that trigger printing of a (1) BMPString or (2) UniversalString with an invalid encoded length.

  • Published: Mar 27, 2009
  • Updated: Apr 13, 2023
  • CVE: CVE-2009-0590
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 5
  • AV:N/AC:L/Au:N/C:N/I:N/A:P

CWEs:

Software From Fixed in
openssl / openssl - 0.9.8k
debian / debian_linux 5.0 5.0.x
debian / debian_linux 4.0 4.0.x