Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2014-3512

Multiple buffer overflows in crypto/srp/srp_lib.c in the SRP implementation in OpenSSL 1.0.1 before 1.0.1i allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via an invalid SRP (1) g, (2) A, or (3) B parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.669
EPSS Ranking 98.5%
CVSS Severity
CVSS v2 Score 7.5
References
Products affected by CVE-2014-3512
  • Openssl » Openssl » Version: 1.0.0
    cpe:2.3:a:openssl:openssl:1.0.0
  • Openssl » Openssl » Version: 1.0.0a
    cpe:2.3:a:openssl:openssl:1.0.0a
  • Openssl » Openssl » Version: 1.0.0b
    cpe:2.3:a:openssl:openssl:1.0.0b
  • Openssl » Openssl » Version: 1.0.0c
    cpe:2.3:a:openssl:openssl:1.0.0c
  • Openssl » Openssl » Version: 1.0.0d
    cpe:2.3:a:openssl:openssl:1.0.0d
  • Openssl » Openssl » Version: 1.0.0e
    cpe:2.3:a:openssl:openssl:1.0.0e
  • Openssl » Openssl » Version: 1.0.0f
    cpe:2.3:a:openssl:openssl:1.0.0f
  • Openssl » Openssl » Version: 1.0.0g
    cpe:2.3:a:openssl:openssl:1.0.0g
  • Openssl » Openssl » Version: 1.0.0h
    cpe:2.3:a:openssl:openssl:1.0.0h
  • Openssl » Openssl » Version: 1.0.0i
    cpe:2.3:a:openssl:openssl:1.0.0i
  • Openssl » Openssl » Version: 1.0.0j
    cpe:2.3:a:openssl:openssl:1.0.0j
  • Openssl » Openssl » Version: 1.0.0k
    cpe:2.3:a:openssl:openssl:1.0.0k
  • Openssl » Openssl » Version: 1.0.0l
    cpe:2.3:a:openssl:openssl:1.0.0l
  • Openssl » Openssl » Version: 1.0.0m
    cpe:2.3:a:openssl:openssl:1.0.0m
  • Openssl » Openssl » Version: 1.0.1
    cpe:2.3:a:openssl:openssl:1.0.1
  • Openssl » Openssl » Version: 1.0.1a
    cpe:2.3:a:openssl:openssl:1.0.1a
  • Openssl » Openssl » Version: 1.0.1b
    cpe:2.3:a:openssl:openssl:1.0.1b
  • Openssl » Openssl » Version: 1.0.1c
    cpe:2.3:a:openssl:openssl:1.0.1c
  • Openssl » Openssl » Version: 1.0.1d
    cpe:2.3:a:openssl:openssl:1.0.1d
  • Openssl » Openssl » Version: 1.0.1e
    cpe:2.3:a:openssl:openssl:1.0.1e
  • Openssl » Openssl » Version: 1.0.1f
    cpe:2.3:a:openssl:openssl:1.0.1f
  • Openssl » Openssl » Version: 1.0.1g
    cpe:2.3:a:openssl:openssl:1.0.1g
  • Openssl » Openssl » Version: 1.0.1h
    cpe:2.3:a:openssl:openssl:1.0.1h


Contact Us

Shodan ® - All rights reserved