296,172
Total vulnerabilities in the database
The Cryptographic Message Syntax (CMS) implementation in crypto/cms/cms_asn1.c in OpenSSL before 0.9.8o and 1.x before 1.0.0a does not properly handle structures that contain OriginatorInfo, which allows context-dependent attackers to modify invalid memory locations or conduct double-free attacks, and possibly execute arbitrary code, via unspecified vectors.
Software | From | Fixed in |
---|---|---|
openssl / openssl | 0.9.7-beta5 | 0.9.7-beta5.x |
openssl / openssl | 0.9.7-beta3 | 0.9.7-beta3.x |
openssl / openssl | 0.9.5a-beta2 | 0.9.5a-beta2.x |
openssl / openssl | 0.9.7-beta6 | 0.9.7-beta6.x |
openssl / openssl | 0.9.8b | 0.9.8b.x |
openssl / openssl | 0.9.7l | 0.9.7l.x |
openssl / openssl | 0.9.6i | 0.9.6i.x |
openssl / openssl | 0.9.8m | 0.9.8m.x |
openssl / openssl | 0.9.3 | 0.9.3.x |
openssl / openssl | 0.9.8c | 0.9.8c.x |
openssl / openssl | 0.9.7-beta2 | 0.9.7-beta2.x |
openssl / openssl | 0.9.7c | 0.9.7c.x |
openssl / openssl | 0.9.5-beta1 | 0.9.5-beta1.x |
openssl / openssl | 0.9.6d | 0.9.6d.x |
openssl / openssl | 0.9.1c | 0.9.1c.x |
openssl / openssl | 0.9.6 | 0.9.6.x |
openssl / openssl | 0.9.7j | 0.9.7j.x |
openssl / openssl | 0.9.6a | 0.9.6a.x |
openssl / openssl | 0.9.8e | 0.9.8e.x |
openssl / openssl | 0.9.4 | 0.9.4.x |
openssl / openssl | 0.9.8g | 0.9.8g.x |
openssl / openssl | 0.9.6a-beta2 | 0.9.6a-beta2.x |
openssl / openssl | 0.9.8k | 0.9.8k.x |
openssl / openssl | 0.9.8d | 0.9.8d.x |
openssl / openssl | 0.9.5a | 0.9.5a.x |
openssl / openssl | 0.9.6f | 0.9.6f.x |
openssl / openssl | 0.9.8j | 0.9.8j.x |
openssl / openssl | 0.9.6-beta3 | 0.9.6-beta3.x |
openssl / openssl | 0.9.6l | 0.9.6l.x |
openssl / openssl | 0.9.7k | 0.9.7k.x |
openssl / openssl | 0.9.7g | 0.9.7g.x |
openssl / openssl | 0.9.6e | 0.9.6e.x |
openssl / openssl | 0.9.7d | 0.9.7d.x |
openssl / openssl | 0.9.8l | 0.9.8l.x |
openssl / openssl | 0.9.7 | 0.9.7.x |
openssl / openssl | 0.9.6b | 0.9.6b.x |
openssl / openssl | 0.9.7e | 0.9.7e.x |
openssl / openssl | 0.9.7b | 0.9.7b.x |
openssl / openssl | 0.9.6a-beta1 | 0.9.6a-beta1.x |
openssl / openssl | 0.9.6k | 0.9.6k.x |
openssl / openssl | 0.9.8a | 0.9.8a.x |
openssl / openssl | 0.9.6g | 0.9.6g.x |
openssl / openssl | 0.9.6-beta2 | 0.9.6-beta2.x |
openssl / openssl | 0.9.7m | 0.9.7m.x |
openssl / openssl | 0.9.7-beta4 | 0.9.7-beta4.x |
openssl / openssl | 0.9.3a | 0.9.3a.x |
openssl / openssl | - | 0.9.8n.x |
openssl / openssl | 0.9.6h | 0.9.6h.x |
openssl / openssl | 0.9.7-beta1 | 0.9.7-beta1.x |
openssl / openssl | 0.9.7i | 0.9.7i.x |
openssl / openssl | 0.9.7h | 0.9.7h.x |
openssl / openssl | 0.9.6j | 0.9.6j.x |
openssl / openssl | 0.9.8 | 0.9.8.x |
openssl / openssl | 0.9.7a | 0.9.7a.x |
openssl / openssl | 0.9.6c | 0.9.6c.x |
openssl / openssl | 0.9.6-beta1 | 0.9.6-beta1.x |
openssl / openssl | 0.9.6m | 0.9.6m.x |
openssl / openssl | 0.9.8i | 0.9.8i.x |
openssl / openssl | 0.9.8f | 0.9.8f.x |
openssl / openssl | 0.9.5-beta2 | 0.9.5-beta2.x |
openssl / openssl | 0.9.8h | 0.9.8h.x |
openssl / openssl | 0.9.2b | 0.9.2b.x |
openssl / openssl | 0.9.5 | 0.9.5.x |
openssl / openssl | 0.9.5a-beta1 | 0.9.5a-beta1.x |
openssl / openssl | 0.9.6a-beta3 | 0.9.6a-beta3.x |
openssl / openssl | 0.9.7f | 0.9.7f.x |
openssl / openssl | 1.0.0-beta1 | 1.0.0-beta1.x |
openssl / openssl | 1.0.0-beta2 | 1.0.0-beta2.x |
openssl / openssl | 1.0.0-beta3 | 1.0.0-beta3.x |
openssl / openssl | 1.0.0-beta4 | 1.0.0-beta4.x |
openssl / openssl | 1.0.0 | 1.0.0.x |
openssl / openssl | 1.0.0-beta5 | 1.0.0-beta5.x |