VDB

GCVE-110-MAGEIA-2021-108

GCVE-110-MAGEIA-2021-108
Advisory Published
Vulnetix · Advisory published March 4, 2021
Paul Kehrer discovered that OpenSSL incorrectly handled certain input lengths in EVP functions. A remote attacker could possibly use this issue to cause OpenSSL to crash, resulting in a denial of service (CVE-2021-23840). Tavis Ormandy discovered that OpenSSL incorrectly handled parsing issuer fields. A remote attacker could possibly use this issue to cause OpenSSL to crash, resulting in a denial of service (CVE-2021-23841).

Affected Products

VendorProductVersionsPlatforms
Mageiaopenssl1.1.0l-1.3.mga7 (unaffected), 0 (affected), 1.1.0l-1.3.mga7 (unaffected), 0 (affected)
Mageiacompat-openssl100 (affected), 1.0.2u-1.2.mga7 (unaffected), 0 (affected), 1.0.2u-1.2.mga7 (unaffected)
Mageiaphp0 (affected), 7.3.28-1.mga7 (unaffected)
Mageiaopenssl0 (affected), * (unaffected), 0 (affected), 1.1.1j-1.mga8 (unaffected)

Browse GCVE Records

74,585 records in the GCVE database · Updated July 24, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›