Description
The asn1_d2i_read_bio function in crypto/asn1/a_d2i_fp.c in the ASN.1 BIO implementation in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (memory consumption) via a short invalid encoding.
Remediation
References
Related Vulnerabilities
PostgreSQL Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-0766)
Atlassian Jira Server-Side Request Forgery (SSRF) Vulnerability (CVE-2017-16865)
mod_ssl Other Vulnerability (CVE-2004-0700)
WebLogic Deserialization of Untrusted Data Vulnerability (CVE-2022-23302)
WordPress Plugin Subscriptions & Memberships for PayPal Cross-Site Scripting (1.1.2)