VDB
BDU%3A2023-00675
BDU%3A2023-00675
PUBLISHED
CVSS 7.5 HIGH
Уязвимость функции BIO_new_NDEF() библиотеки OpenSSL, позволяющая нарушителю вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
7.5
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| ООО «РусБИТех-Астра», Novell Inc., Red Hat Inc., Сообщество свободного программного обеспечения, АО «ИВК», OpenSSL Software Foundation, АО «НТЦ ИТ РОСА», АО "НППКТ", ООО «Открытая мобильная платформа» | Astra Linux Special Edition (запись в едином реестре российских программ №369), SUSE Linux Enterprise Server for SAP Applications, Red Hat Enterprise Linux, Suse Linux Enterprise Server, SUSE Linux Enterprise Software Development Kit, Debian GNU/Linux, SUSE OpenStack Cloud, SUSE OpenStack Cloud Crowbar, SUSE CaaS Platform, SUSE Linux Enterprise High Performance Computing, OpenSUSE Leap, SUSE Manager Proxy, SUSE Manager Server, SUSE Enterprise Storage, Альт 8 СП (запись в едином реестре российских программ №4305), Suse Linux Enterprise Desktop, SUSE Manager Retail Branch Server, openSUSE Leap Micro, SUSE Linux Enterprise Module for Basesystem, SUSE Linux Enterprise Module for Legacy Software, SUSE Linux Enterprise Real Time, OpenSSL, ROSA Virtualization (запись в едином реестре российских программ №5091), ОСОН ОСнова Оnyx (запись в едином реестре российских программ №5913), АЛЬТ СП 10, ОС Аврора (запись в едином реестре российских программ №1543), ROSA Virtualization 3.0 (запись в едином реестре российских программ №21308) |
Timeline
- Feb 13, 2023 CVE Published
- Aug 19, 2025 CVE Updated
References
- https://www.openssl.org/news/secadv/20230207.txt url
- https://nvd.nist.gov/vuln/detail/CVE-2023-0215 url
- https://altsp.su/obnovleniya-bezopasnosti/ url
- https://wiki.astralinux.ru/astra-linux-se47-bulletin-2023-0316SE47MD url
- https://поддержка.нппкт.рф/bin/view/ОСнова/Обновления/2.8/ url
- https://access.redhat.com/security/cve/CVE-2023-0215 url
- https://cve.omp.ru/bb25402 url
- https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=c3829dd8825c654652201e16f8a0a0c46ee3f344 advisory
- https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=8818064ce3c3c0f1b740a5aaba2a987e75bfbafd advisory
- https://git.openssl.org/gitweb/?p=openssl.git;a=commit;h=c3829dd8825c654652201e16f8a0a0c46ee3f344 advisory
- https://git.openssl.org/gitweb/?p=openssl.git;a=commit;h=f040f2577891d2bdb7610566c172233844cf673a advisory
- https://git.openssl.org/gitweb/?p=openssl.git;a=commit;h=8818064ce3c3c0f1b740a5aaba2a987e75bfbafd advisory
- https://git.openssl.org/gitweb/?p=openssl.git;a=commit;h=f596ec8a6f9f5fcfa8e46a73b60f78a609725294 advisory
- https://security-tracker.debian.org/tracker/CVE-2023-0215 advisory
- https://www.suse.com/security/cve/CVE-2023-0286.html advisory
- https://wiki.astralinux.ru/astra-linux-se17-bulletin-2023-0303SE17MD advisory
- https://wiki.astralinux.ru/astra-linux-se16-bulletin-20231214SE16 advisory
- https://abf.rosa.ru/advisories/ROSA-SA-2025-2898 advisory
- https://abf.rosa.ru/advisories/ROSA-SA-2025-2897 advisory