Wind River Support Network

HomeDefectsLIN7-8724
Fixed

LIN7-8724 : Security Advisory - openssl - CVE-2017-3735

Created: Sep 6, 2017    Updated: Sep 8, 2018
Resolved Date: Sep 21, 2017
Previous ID: LIN5-23566
Found In Version: 7.0.0.25
Fix Version: 7.0.0.27
Severity: Standard
Applicable for: Wind River Linux 7
Component/s: Userspace

Description

While parsing an IPAddressFamily extension in an X.509 certificate, it is possible to do a one-byte overread. This would result in an incorrect text display of the certificate. This bug has been present since 2006 and is present in all versions of OpenSSL since then.

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-3735

Other Downloads


CVEs


Live chat
Online