VDB
BDU%3A2023-02239
BDU%3A2023-02239
PUBLISHED
CVSS 7.800000190734863 HIGH
Уязвимость функций d2i_PKCS7(), d2i_PKCS7_bio() или d2i_PKCS7_fp() реализации стандарта PKCS #7 криптографической библиотеки OpenSSL, позволяющая нарушителю вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
7.800000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Novell Inc., ООО «Ред Софт», Red Hat Inc., OpenSSL Software Foundation | openSUSE Tumbleweed, РЕД ОС (запись в едином реестре российских программ №3751), OpenSUSE Leap, Suse Linux Enterprise Server, Suse Linux Enterprise Desktop, SUSE Linux Enterprise Server for SAP Applications, Red Hat Enterprise Linux, SUSE Manager Retail Branch Server, SUSE Manager Proxy, SUSE Manager Server, SUSE Linux Enterprise High Performance Computing, SUSE Linux Enterprise Module for Basesystem, OpenSSL |
Timeline
- Apr 26, 2023 CVE Published
- Aug 19, 2024 CVE Updated
References
- https://redos.red-soft.ru/support/secure/uyazvimosti/mnozhestvennye-uyazvimosti-openssl-cve-2022-4304-cve-2022-4450-cve-2023-0286/?sphrase_id=163100 url
- https://access.redhat.com/security/cve/CVE-2023-0216 url
- https://www.openssl.org/news/secadv/20230207.txt url
- https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=934a04f0e775309cadbef0aa6b9692e1b12a76c6 advisory
- http://repo.red-soft.ru/redos/7.3c/x86_64/updates/ advisory
- https://www.suse.com/security/cve/CVE-2023-0216.html advisory