vulnerability
SUSE: CVE-2016-2108: SUSE Linux Security Advisory
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
10 | (AV:N/AC:L/Au:N/C:C/I:C/A:C) | 2016-05-03 | 2016-05-03 | 2022-02-04 |
Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
2016-05-03
Added
2016-05-03
Modified
2022-02-04
Description
The ASN.1 implementation in OpenSSL before 1.0.1o and 1.0.2 before 1.0.2c allows remote attackers to execute arbitrary code or cause a denial of service (buffer underflow and memory corruption) via an ANY field in crafted serialized data, aka the "negative zero" issue.
Solution(s)
suse-upgrade-compat-openssl097gsuse-upgrade-compat-openssl097g-32bitsuse-upgrade-libopenssl-develsuse-upgrade-libopenssl-devel-32bitsuse-upgrade-libopenssl0_9_8suse-upgrade-libopenssl0_9_8-32bitsuse-upgrade-libopenssl0_9_8-hmacsuse-upgrade-libopenssl0_9_8-hmac-32bitsuse-upgrade-libopenssl0_9_8-x86suse-upgrade-libopenssl1-develsuse-upgrade-libopenssl1_0_0suse-upgrade-libopenssl1_0_0-32bitsuse-upgrade-libopenssl1_0_0-hmacsuse-upgrade-libopenssl1_0_0-hmac-32bitsuse-upgrade-libopenssl1_0_0-x86suse-upgrade-opensslsuse-upgrade-openssl-docsuse-upgrade-openssl1suse-upgrade-openssl1-docsuse-upgrade-sles12-docker-imagesuse-upgrade-sles12sp1-docker-image
References
- SUSE-SUSE-SU-2016:1206
- SUSE-SUSE-SU-2016:1206-1
- SUSE-SUSE-SU-2016:1228
- SUSE-SUSE-SU-2016:1228-1
- SUSE-SUSE-SU-2016:1231
- SUSE-SUSE-SU-2016:1231-1
- SUSE-SUSE-SU-2016:1233
- SUSE-SUSE-SU-2016:1233-1
- SUSE-SUSE-SU-2016:1267
- SUSE-SUSE-SU-2016:1267-1
- SUSE-SUSE-SU-2016:1290
- SUSE-SUSE-SU-2016:1290-1
- SUSE-SUSE-SU-2016:1360
- SUSE-SUSE-SU-2016:1360-1
- SUSE-SUSE-SU-2017:0461-1
- SUSE-SUSE-SU-2017:0495-1
- SUSE-SUSE-SU-2017:0585-1
- SUSE-SUSE-SU-2017:0601-1
- SUSE-SUSE-SU-2017:0605-1
- SUSE-SUSE-SU-2017:2699-1
- SUSE-SUSE-SU-2017:2700-1
- SUSE-SUSE-SU-2018:0112-1
- APPLE-APPLE-SA-2016-07-18-1
- REDHAT-RHSA-2016:0722
- REDHAT-RHSA-2016:0996
- REDHAT-RHSA-2016:1137
- REDHAT-RHSA-2016:2056
- REDHAT-RHSA-2016:2073
- REDHAT-RHSA-2016:2957
- REDHAT-RHSA-2017:0193
- REDHAT-RHSA-2017:0194
- DEBIAN-DLA-456-1
- DEBIAN-DSA-3566
- BID-89752
- BID-91787
- SECTRACK-1035721
- UBUNTU-USN-2959-1
- GENTOO-GLSA-201612-16
- NVD-CVE-2016-2108

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.