Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.104533
Category:General
Title:OpenSSL 3.0 < 3.0.8 Multiple Vulnerabilities - Linux
Summary:OpenSSL is prone to multiple vulnerabilities.
Description:Summary:
OpenSSL is prone to multiple vulnerabilities.

Vulnerability Insight:
The following flaws exist:

- CVE-2022-4203: X.509 Name Constraints Read Buffer Overflow

- CVE-2023-0216: Invalid pointer dereference in d2i_PKCS7 functions

- CVE-2023-0217: NULL dereference validating DSA public key

- CVE-2023-0401: NULL dereference during PKCS7 data verification

Affected Software/OS:
OpenSSL version 3.0.

Solution:
Update to version 3.0.8 or later.

CVSS Score:
7.8

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2022-4203
https://security.gentoo.org/glsa/202402-08
3.0.8 git commit
https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=c927a3492698c254637da836762f9b1f86cffabc
OpenSSL Advisory
https://www.openssl.org/news/secadv/20230207.txt
Common Vulnerability Exposure (CVE) ID: CVE-2023-0216
https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=934a04f0e775309cadbef0aa6b9692e1b12a76c6
Common Vulnerability Exposure (CVE) ID: CVE-2023-0217
https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=23985bac83fd50c8e29431009302b5442f985096
Common Vulnerability Exposure (CVE) ID: CVE-2023-0401
https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=d3b6dfd70db844c4499bec6ad6601623a565e674
CopyrightCopyright (C) 2023 Greenbone Networks GmbH

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.