| Severity : |
High
|
| Published : |
2012-04-24
|
| Modified : |
2013-06-05
|
| Base Score : |
7.5
|
| Details : |
Multiple integer signedness errors in crypto/buffer/buffer.c in OpenSSL 0.9.8v allow remote attackers to conduct buffer overflow attacks, and cause a denial of service (memory corruption) or possibly have unspecified other impact, via crafted DER data, as demonstrated by an X.509 certificate or an RSA public key. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-2110.
|
| Product/Version : |
Pro 4.x
CGE 4.x
Mobilinux 4.x
Pro 5.0
CGE 5.x
Mobilinux 5.x
Mobilinux 5.0.24
MVL 5 Atom
Pro 5.0.24
MVL 5 OMAP3
MVL 5 OMAP3530
Carrier Grade CGE 6.0
|
|
CVE Vulnerabilities List CVE-2012