CVE-2021-41581
24.09.2021, 03:15
x509_constraints_parse_mailbox in lib/libcrypto/x509/x509_constraints.c in LibreSSL through 3.4.0 has a stack-based buffer over-read. When the input exceeds DOMAIN_PART_MAX_LEN, the buffer lacks '\0' termination.Enginsight
Vendor | Product | Version |
---|---|---|
openbsd | libressl | 𝑥 ≤ 3.4.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration