vendor:
OpenSSL
by:
Not mentioned
7.5
CVSS
HIGH
Remote Memory-Corruption
Not mentioned
CWE
Product Name: OpenSSL
Affected Version From: OpenSSL 1.0.0a
Affected Version To: Not mentioned
Patch Exists: YES
Related CWE: Not mentioned
CPE: Not mentioned
Platforms Tested: Not mentioned
Not mentioned
OpenSSL Remote Memory-Corruption Vulnerability
The vulnerability allows remote attackers to execute arbitrary code in the context of the application using the vulnerable OpenSSL library. Failed exploit attempts can lead to a denial-of-service condition.
Mitigation:
Apply the latest security patches provided by OpenSSL. Regularly update OpenSSL to the latest version.