Wind River Support Network

HomeDefectsLIN6-13550
Fixed

LIN6-13550 : Security Advisory - openssl - CVE-2017-3735

Created: Sep 6, 2017    Updated: Dec 3, 2018
Resolved Date: Sep 24, 2017
Previous ID: LIN5-23565
Found In Version: 6.0.0.34
Fix Version: 6.0.0.35
Severity: Standard
Applicable for: Wind River Linux 6
Component/s: Userspace

Description

While parsing an IPAddressFamily extension in an X.509 certificate, it is possible to do a one-byte overread. This would result in an incorrect text display of the certificate. This bug has been present since 2006 and is present in all versions of OpenSSL since then.

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-3735

Other Downloads


Live chat
Online