Description
Integer overflow in the EVP_EncodeUpdate function in crypto/evp/encode.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (heap memory corruption) via a large amount of binary data.
Remediation
References
Related Vulnerabilities
WordPress Plugin Slideshow Gallery LITE Multiple Vulnerabilities (1.6.8)
Ruby on Rails Missing Encryption of Sensitive Data Vulnerability (CVE-2010-3299)
Oracle JRE CVE-2019-2978 Vulnerability (CVE-2019-2978)
MySQL CVE-2018-3063 Vulnerability (CVE-2018-3063)
Jboss EAP Incorrect Authorization Vulnerability (CVE-2022-0866)