VDB
BDU%3A2020-02907
BDU%3A2020-02907
PUBLISHED
CVSS 5.400000095367432 MEDIUM
Уязвимость реализации алгоритма умножения Монтгомери библиотеки OpenSSL, связанная с ошибкой управления ключами , позволяющая нарушителю вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
5.400000095367432
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Novell Inc., Сообщество свободного программного обеспечения, ООО «РусБИТех-Астра», OpenSSL Software Foundation, Red Hat Inc., ООО «Юбитех» | OpenSUSE Leap, Debian GNU/Linux, Suse Linux Enterprise Desktop, SUSE Enterprise Storage, SUSE Linux Enterprise Server for SAP Applications, SUSE Linux Enterprise Software Development Kit, Suse Linux Enterprise Server, SUSE Linux Enterprise Module for Web Scripting, Astra Linux Common Edition (запись в едином реестре российских программ №4433), SUSE Linux Enterprise Module for Basesystem, SUSE Linux Enterprise Module for Legacy Software, SUSE Linux Enterprise High Performance Computing, OpenSSL, SUSE Linux Enterprise Module for Containers, JBoss Enterprise Application Platform, Red Hat JBoss Enterprise Web Server, UBLinux (запись в едином реестре российских программ №6874) |
Timeline
- Jun 22, 2020 CVE Published
- Feb 15, 2021 CVE Updated
References
- https://www.suse.com/security/cve/CVE-2016-7055/ url
- https://access.redhat.com/security/cve/CVE-2016-7055 url
- https://www.openssl.org/news/secadv/20161110.txt url
- https://nvd.nist.gov/vuln/detail/CVE-2016-7055 url
- https://security-tracker.debian.org/tracker/CVE-2016-7055 url
- https://github.com/openssl/openssl/commit/57c4b9f6a2f800b41ce2836986fe33640f6c3f8a url