Ecosyste.ms: Advisories
An open API service providing security vulnerability metadata for many open source software ecosystems.
Security Advisories: GSA_kwCzR0hTQS1oOGptLTJ4NTMteGhwNc4AAvn1
X.509 Email Address Variable Length Buffer Overflow
A buffer overrun can be triggered in X.509 certificate verification,
specifically in name constraint checking. Note that this occurs after
certificate chain signature verification and requires either a CA to
have signed a malicious certificate or for an application to continue
certificate verification despite failure to construct a path to a trusted
issuer. An attacker can craft a malicious email address in a certificate
to overflow an arbitrary number of bytes containing the .
character
(decimal 46) on the stack. This buffer overflow could result in a crash
(causing a denial of service).
In a TLS client, this can be triggered by connecting to a malicious
server. In a TLS server, this can be triggered if the server requests
client authentication and a malicious client connects.
JSON: https://advisories.ecosyste.ms/api/v1/advisories/GSA_kwCzR0hTQS1oOGptLTJ4NTMteGhwNc4AAvn1
Source: GitHub Advisory Database
Origin: Unspecified
Severity: High
Classification: General
Published: about 2 years ago
Updated: almost 2 years ago
CVSS Score: 7.5
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Identifiers: GHSA-h8jm-2x53-xhp5, CVE-2022-3786
References:
- https://github.com/rustsec/advisory-db/pull/1452
- https://github.com/alexcrichton/openssl-src-rs/commit/4a31c14f31e1a08c18893a37e304dd1dd4b7daa3
- https://rustsec.org/advisories/RUSTSEC-2022-0065.html
- https://www.openssl.org/news/secadv/20221101.txt
- https://github.com/openssl/openssl/commit/fe3b639dc19b325846f4f6801f2f4604f56e3de3
- https://nvd.nist.gov/vuln/detail/CVE-2022-3786
- https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=c42165b5706e42f67ef8ef4c351a9a4c5d21639a
- https://lists.fedoraproject.org/archives/list/[email protected]/message/63YRPWPUSX3MBHNPIEJZDKQT6YA7UF6S/
- https://lists.fedoraproject.org/archives/list/[email protected]/message/DWP23EZYOBDJQP7HP4YU7W2ABU2YDITS/
- https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2022-0023
- https://security.gentoo.org/glsa/202211-01
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-openssl-W9sdCc2a
- http://packetstormsecurity.com/files/169687/OpenSSL-Security-Advisory-20221101.html
- http://www.openwall.com/lists/oss-security/2022/11/01/15
- http://www.openwall.com/lists/oss-security/2022/11/01/16
- http://www.openwall.com/lists/oss-security/2022/11/01/17
- http://www.openwall.com/lists/oss-security/2022/11/01/18
- http://www.openwall.com/lists/oss-security/2022/11/01/19
- http://www.openwall.com/lists/oss-security/2022/11/01/20
- http://www.openwall.com/lists/oss-security/2022/11/01/21
- http://www.openwall.com/lists/oss-security/2022/11/01/24
- http://www.openwall.com/lists/oss-security/2022/11/02/1
- http://www.openwall.com/lists/oss-security/2022/11/02/10
- http://www.openwall.com/lists/oss-security/2022/11/02/11
- http://www.openwall.com/lists/oss-security/2022/11/02/12
- http://www.openwall.com/lists/oss-security/2022/11/02/2
- http://www.openwall.com/lists/oss-security/2022/11/02/3
- http://www.openwall.com/lists/oss-security/2022/11/02/5
- http://www.openwall.com/lists/oss-security/2022/11/02/6
- http://www.openwall.com/lists/oss-security/2022/11/02/7
- http://www.openwall.com/lists/oss-security/2022/11/02/9
- https://security.netapp.com/advisory/ntap-20221102-0001/
- https://www.kb.cert.org/vuls/id/794340
- http://www.openwall.com/lists/oss-security/2022/11/02/13
- http://www.openwall.com/lists/oss-security/2022/11/02/14
- http://www.openwall.com/lists/oss-security/2022/11/02/15
- http://www.openwall.com/lists/oss-security/2022/11/03/1
- http://www.openwall.com/lists/oss-security/2022/11/03/2
- http://www.openwall.com/lists/oss-security/2022/11/03/3
- http://www.openwall.com/lists/oss-security/2022/11/03/5
- https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=c42165b5706e42f67ef8ef4c351a9a4c5d21639a
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/63YRPWPUSX3MBHNPIEJZDKQT6YA7UF6S/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DWP23EZYOBDJQP7HP4YU7W2ABU2YDITS/
- http://www.openwall.com/lists/oss-security/2022/11/03/10
- http://www.openwall.com/lists/oss-security/2022/11/03/11
- http://www.openwall.com/lists/oss-security/2022/11/03/6
- http://www.openwall.com/lists/oss-security/2022/11/03/7
- http://www.openwall.com/lists/oss-security/2022/11/03/9
- https://github.com/advisories/GHSA-h8jm-2x53-xhp5
Blast Radius: 26.7
Affected Packages
cargo:openssl-src
Dependent packages: 13Dependent repositories: 3,600
Downloads: 28,473,129 total
Affected Version Ranges: >= 300.0.0, < 300.0.11
Fixed in: 300.0.11
All affected versions: 300.0.0, 300.0.1, 300.0.2, 300.0.3, 300.0.4, 300.0.5, 300.0.6, 300.0.7, 300.0.8, 300.0.9, 300.0.10
All unaffected versions: 110.0.0, 110.0.0, 110.0.1, 110.0.2, 110.0.3, 110.0.4, 110.0.5, 110.0.6, 110.0.7, 111.0.0, 111.0.1, 111.1.0, 111.1.1, 111.2.1, 111.3.0, 111.4.0, 111.5.0, 111.6.0, 111.6.1, 111.7.0, 111.8.0, 111.8.1, 111.9.0, 111.10.0, 111.10.1, 111.10.2, 111.11.0, 111.12.0, 111.13.0, 111.14.0, 111.15.0, 111.16.0, 111.17.0, 111.18.0, 111.19.0, 111.20.0, 111.21.0, 111.22.0, 111.23.0, 111.24.0, 111.25.0, 111.25.1, 111.25.2, 111.25.3, 111.26.0, 111.27.0, 111.28.0, 111.28.1, 111.28.2, 300.0.11, 300.0.12, 300.0.13, 300.1.0, 300.1.1, 300.1.2, 300.1.3, 300.1.4, 300.1.5, 300.1.6, 300.2.0, 300.2.1, 300.2.2, 300.2.3, 300.3.0, 300.3.1, 300.3.2, 300.4.0, 300.4.1