Tomas Mraz
38 exploits
Active since Aug 2017
OpenSSL - NULL Pointer Dereference in CRMF EncryptedValue Decryption
CVSS 5.9
OpenSSL - NULL Pointer Dereference in CRMF EncryptedValue Decryption
CVSS 5.9
ECDSA Signature Computation - Timing Side-Channel
CVSS 4.1
OpenSSL 3.0.0-3.0.12, 3.1.0-3.1.4, 3.2.0 - Denial of Service via RSA Public Key Validation
CVSS 5.9
ECDSA Signature Computation - Timing Side-Channel
CVSS 4.1
OpenSSL 3.0.0-3.0.12, 3.1.0-3.1.4, 3.2.0 - Denial of Service via RSA Public Key Validation
CVSS 5.9
ECDSA Signature Computation - Timing Side-Channel
CVSS 4.1
ECDSA Signature Computation - Timing Side-Channel
CVSS 4.1
OpenSSL 3.0.0-3.0.13, 3.1.0-3.1.5, 3.2.0-3.2.1, 3.3.0 - Denial of Service via DSA Key Parameter Check
CVSS 5.3
OpenSSL 3.0.0-3.0.13, 3.1.0-3.1.5, 3.2.0-3.2.1, 3.3.0 - Denial of Service via DSA Key Parameter Check
CVSS 5.3
OpenSSL 3.0.0-3.0.13, 3.1.0-3.1.5, 3.2.0-3.2.1, 3.3.0 - Denial of Service via DSA Key Parameter Check
CVSS 5.3
OpenSSL 3.4.0-3.4.3, 3.5.0-3.5.4, 3.6.0 - Stack-based Buffer Overflow in PKCS#12 PBMAC1 MAC Verification
CVSS 6.1
OpenSSL 3.4.0-3.4.3, 3.5.0-3.5.4, 3.6.0 - Stack-based Buffer Overflow in PKCS#12 PBMAC1 MAC Verification
CVSS 6.1
OpenSSL 3.0.16-3.0.17, 3.2.4-3.2.5, 3.3.3-3.3.4, 3.4.0-3.4.2, 3.5.0-3.5.3 DoS via HTTP Client API no_proxy
CVSS 5.9
OpenSSL 3.2.0-3.2.5, 3.3.0-3.3.4, 3.4.0-3.4.2, 3.5.0-3.5.3 - SM2 Timing Side-Channel on 64-bit ARM
CVSS 6.5
OpenSSL 3.0.16-3.0.17, 3.2.4-3.2.5, 3.3.3-3.3.4, 3.4.0-3.4.2, 3.5.0-3.5.3 DoS via HTTP Client API no_proxy
CVSS 5.9
Possible NULL Dereference When Processing CMS KeyAgreeRecipientInfo
CVSS 7.5
Possible NULL Dereference When Processing CMS KeyTransportRecipientInfo
CVSS 7.5
OpenSSL 3.2.0-3.2.5, 3.3.0-3.3.4, 3.4.0-3.4.2, 3.5.0-3.5.3 - SM2 Timing Side-Channel on 64-bit ARM
CVSS 6.5
OpenSSL 3.0.16-3.0.17, 3.2.4-3.2.5, 3.3.3-3.3.4, 3.4.0-3.4.2, 3.5.0-3.5.3 DoS via HTTP Client API no_proxy
CVSS 5.9
Possible NULL Dereference When Processing CMS KeyAgreeRecipientInfo
CVSS 7.5
Possible NULL Dereference When Processing CMS KeyTransportRecipientInfo
CVSS 7.5
OpenSSL 3.2.0-3.2.5, 3.3.0-3.3.4, 3.4.0-3.4.2, 3.5.0-3.5.3 - SM2 Timing Side-Channel on 64-bit ARM
CVSS 6.5
OpenSSL 3.0.16-3.0.17, 3.2.4-3.2.5, 3.3.3-3.3.4, 3.4.0-3.4.2, 3.5.0-3.5.3 DoS via HTTP Client API no_proxy
CVSS 5.9
Possible NULL Dereference When Processing CMS KeyAgreeRecipientInfo
CVSS 7.5