OpenSSL before 0.9.8k on WIN64 and certain other platforms does not properly handle a malformed ASN.1 structure, which allows remote attackers to cause a denial of service (invalid memory access and application crash) by placing this structure in the public key of a certificate, as demonstrated by an RSA public key.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2009-03-27 09:30
Updated : 2017-08-16 18:30
NVD link : CVE-2009-0789
Mitre link : CVE-2009-0789
JSON object : View
CWE
CWE-189
Numeric Errors
Products Affected
openssl
- openssl