CVE-2015-0286

OpenSSL < 0.9.8zf 1.0.0 < 1.0.0r 1.0.1 < 1.0.1m 1.0.2 < 1.0.2a - Denial of Service via ASN1_TYPE_cmp Boolean Comparison

Title source: llm
STIX 2.1

Description

The ASN1_TYPE_cmp function in crypto/asn1/a_type.c in OpenSSL before 0.9.8zf, 1.0.0 before 1.0.0r, 1.0.1 before 1.0.1m, and 1.0.2 before 1.0.2a does not properly perform boolean-type comparisons, which allows remote attackers to cause a denial of service (invalid read operation and application crash) via a crafted X.509 certificate to an endpoint that uses the certificate-verification feature.

References (52)

Core 52
Core References
Vendor Advisory vendor-advisory
http://rhn.redhat.com/errata/RHSA-2015-0715.html
Third Party Advisory vendor-advisory
http://www.debian.org/security/2015/dsa-3197
Mailing List, Third Party Advisory vendor-advisory
http://lists.fedoraproject.org/pipermail/package-announce/2015-May/156823.html
Vendor Advisory vendor-advisory
http://rhn.redhat.com/errata/RHSA-2015-0716.html
Vendor Advisory vendor-advisory
http://rhn.redhat.com/errata/RHSA-2015-0752.html
Vendor Advisory vendor-advisory
http://rhn.redhat.com/errata/RHSA-2016-2957.html
Mailing List, Third Party Advisory vendor-advisory
http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157177.html
Vendor Advisory vendor-advisory
http://www.ubuntu.com/usn/USN-2537-1
Third Party Advisory, VDB Entry vdb-entry
http://www.securitytracker.com/id/1032917
Third Party Advisory, VDB Entry vdb-entry
http://www.securitytracker.com/id/1031929
Third Party Advisory, VDB Entry vdb-entry
http://www.securityfocus.com/bid/73225

Scores

EPSS 0.2110
EPSS Percentile 95.7%

Details

CWE
CWE-17
Status published
Products (33)
openssl/openssl 1.0.0
openssl/openssl 1.0.0a
openssl/openssl 1.0.0b
openssl/openssl 1.0.0c
openssl/openssl 1.0.0d
openssl/openssl 1.0.0e
openssl/openssl 1.0.0f
openssl/openssl 1.0.0g
openssl/openssl 1.0.0h
openssl/openssl 1.0.0i
... and 23 more
Published Mar 19, 2015
Tracked Since Feb 18, 2026