CVE
- Id
- 77550
- CVE No.
- CVE-2015-0287
- Status
- Candidate
- Description
- The ASN1_item_ex_d2i function in crypto/asn1/tasn_dec.c in OpenSSL before 0.9.8zf, 1.0.0 before 1.0.0r, 1.0.1 before 1.0.1m, and 1.0.2 before 1.0.2a does not reinitialize CHOICE and ADB data structures, which might allow attackers to cause a denial of service (invalid write operation and memory corruption) by leveraging an application that relies on ASN.1 structure reuse.
- Phase
- Assigned (20141118)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
709653 | 77550 | CVE-2015-0287 | CONFIRM:https://bugzilla.redhat.com/show_bug.cgi?id=1202380 | View |
709654 | 77550 | CVE-2015-0287 | CONFIRM:https://git.openssl.org/?p=openssl.git;a=commit;h=b717b083073b6cacc0a5e2397b661678aff7ae7f | View |
709655 | 77550 | CVE-2015-0287 | CONFIRM:https://www.openssl.org/news/secadv_20150319.txt | View |
709656 | 77550 | CVE-2015-0287 | CONFIRM:https://access.redhat.com/articles/1384453 | View |
709657 | 77550 | CVE-2015-0287 | CONFIRM:http://support.apple.com/kb/HT204942 | View |
709658 | 77550 | CVE-2015-0287 | CONFIRM:http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html | View |
709659 | 77550 | CVE-2015-0287 | CONFIRM:https://support.apple.com/HT205212 | View |
709660 | 77550 | CVE-2015-0287 | CONFIRM:https://support.apple.com/HT205267 | View |
709661 | 77550 | CVE-2015-0287 | CONFIRM:http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html | View |
709662 | 77550 | CVE-2015-0287 | CONFIRM:https://bto.bluecoat.com/security-advisory/sa92 | View |
709663 | 77550 | CVE-2015-0287 | CONFIRM:http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html | View |
709664 | 77550 | CVE-2015-0287 | CONFIRM:http://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.html | View |
709665 | 77550 | CVE-2015-0287 | CONFIRM:http://www.oracle.com/technetwork/topics/security/bulletinjan2015-2370101.html | View |
709666 | 77550 | CVE-2015-0287 | CONFIRM:http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10680 | View |
709667 | 77550 | CVE-2015-0287 | CONFIRM:https://kc.mcafee.com/corporate/index?page=content&id=SB10110 | View |
709668 | 77550 | CVE-2015-0287 | APPLE:APPLE-SA-2015-06-30-2 | View |
709669 | 77550 | CVE-2015-0287 | URL:http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.html | View |
709670 | 77550 | CVE-2015-0287 | APPLE:APPLE-SA-2015-09-16-1 | View |
709671 | 77550 | CVE-2015-0287 | URL:http://lists.apple.com/archives/security-announce/2015/Sep/msg00001.html | View |
709672 | 77550 | CVE-2015-0287 | APPLE:APPLE-SA-2015-09-30-3 | View |
709673 | 77550 | CVE-2015-0287 | URL:http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html | View |
709674 | 77550 | CVE-2015-0287 | DEBIAN:DSA-3197 | View |
709675 | 77550 | CVE-2015-0287 | URL:http://www.debian.org/security/2015/dsa-3197 | View |
709676 | 77550 | CVE-2015-0287 | FEDORA:FEDORA-2015-4300 | View |
709677 | 77550 | CVE-2015-0287 | URL:http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152844.html | View |
709678 | 77550 | CVE-2015-0287 | FEDORA:FEDORA-2015-4303 | View |
709679 | 77550 | CVE-2015-0287 | URL:http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152733.html | View |
709680 | 77550 | CVE-2015-0287 | FEDORA:FEDORA-2015-4320 | View |
709681 | 77550 | CVE-2015-0287 | URL:http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152734.html | View |
709682 | 77550 | CVE-2015-0287 | FEDORA:FEDORA-2015-6855 | View |
709683 | 77550 | CVE-2015-0287 | URL:http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157177.html | View |
709684 | 77550 | CVE-2015-0287 | FEDORA:FEDORA-2015-6951 | View |
709685 | 77550 | CVE-2015-0287 | URL:http://lists.fedoraproject.org/pipermail/package-announce/2015-May/156823.html | View |
709686 | 77550 | CVE-2015-0287 | FREEBSD:FreeBSD-SA-15:06 | View |
709687 | 77550 | CVE-2015-0287 | URL:https://www.freebsd.org/security/advisories/FreeBSD-SA-15%3A06.openssl.asc | View |
709688 | 77550 | CVE-2015-0287 | GENTOO:GLSA-201503-11 | View |
709689 | 77550 | CVE-2015-0287 | URL:https://security.gentoo.org/glsa/201503-11 | View |
709690 | 77550 | CVE-2015-0287 | HP:HPSBGN03306 | View |
709691 | 77550 | CVE-2015-0287 | URL:http://marc.info/?l=bugtraq&m=142841429220765&w=2 | View |
709692 | 77550 | CVE-2015-0287 | HP:HPSBMU03380 | View |
709693 | 77550 | CVE-2015-0287 | URL:http://marc.info/?l=bugtraq&m=143748090628601&w=2 | View |
709694 | 77550 | CVE-2015-0287 | HP:HPSBMU03397 | View |
709695 | 77550 | CVE-2015-0287 | URL:http://marc.info/?l=bugtraq&m=144050297101809&w=2 | View |
709696 | 77550 | CVE-2015-0287 | HP:HPSBMU03409 | View |
709697 | 77550 | CVE-2015-0287 | URL:http://marc.info/?l=bugtraq&m=144050155601375&w=2 | View |
709698 | 77550 | CVE-2015-0287 | HP:HPSBUX03334 | View |
709699 | 77550 | CVE-2015-0287 | URL:http://marc.info/?l=bugtraq&m=143213830203296&w=2 | View |
709700 | 77550 | CVE-2015-0287 | HP:SSRT102000 | View |
709701 | 77550 | CVE-2015-0287 | URL:http://marc.info/?l=bugtraq&m=143213830203296&w=2 | View |
709702 | 77550 | CVE-2015-0287 | MANDRIVA:MDVSA-2015:062 | View |
709703 | 77550 | CVE-2015-0287 | URL:http://www.mandriva.com/security/advisories?name=MDVSA-2015:062 | View |
709704 | 77550 | CVE-2015-0287 | MANDRIVA:MDVSA-2015:063 | View |
709705 | 77550 | CVE-2015-0287 | URL:http://www.mandriva.com/security/advisories?name=MDVSA-2015:063 | View |
709706 | 77550 | CVE-2015-0287 | REDHAT:RHSA-2015:0716 | View |
709707 | 77550 | CVE-2015-0287 | URL:http://rhn.redhat.com/errata/RHSA-2015-0716.html | View |
709708 | 77550 | CVE-2015-0287 | REDHAT:RHSA-2015:0715 | View |
709709 | 77550 | CVE-2015-0287 | URL:http://rhn.redhat.com/errata/RHSA-2015-0715.html | View |
709710 | 77550 | CVE-2015-0287 | REDHAT:RHSA-2015:0752 | View |
709711 | 77550 | CVE-2015-0287 | URL:http://rhn.redhat.com/errata/RHSA-2015-0752.html | View |
709712 | 77550 | CVE-2015-0287 | REDHAT:RHSA-2015:0800 | View |
709713 | 77550 | CVE-2015-0287 | URL:http://rhn.redhat.com/errata/RHSA-2015-0800.html | View |
709714 | 77550 | CVE-2015-0287 | SUSE:openSUSE-SU-2015:0554 | View |
709715 | 77550 | CVE-2015-0287 | URL:http://lists.opensuse.org/opensuse-updates/2015-03/msg00062.html | View |
709716 | 77550 | CVE-2015-0287 | SUSE:SUSE-SU-2015:0541 | View |
709717 | 77550 | CVE-2015-0287 | URL:http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00022.html | View |
709718 | 77550 | CVE-2015-0287 | SUSE:SUSE-SU-2015:0578 | View |
709719 | 77550 | CVE-2015-0287 | URL:http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00027.html | View |
709720 | 77550 | CVE-2015-0287 | SUSE:openSUSE-SU-2016:0640 | View |
709721 | 77550 | CVE-2015-0287 | URL:http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00011.html | View |
709722 | 77550 | CVE-2015-0287 | SUSE:SUSE-SU-2016:0678 | View |
709723 | 77550 | CVE-2015-0287 | URL:http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00017.html | View |
709724 | 77550 | CVE-2015-0287 | SUSE:openSUSE-SU-2015:1277 | View |
709725 | 77550 | CVE-2015-0287 | URL:http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00037.html | View |
709726 | 77550 | CVE-2015-0287 | UBUNTU:USN-2537-1 | View |
709727 | 77550 | CVE-2015-0287 | URL:http://www.ubuntu.com/usn/USN-2537-1 | View |
709728 | 77550 | CVE-2015-0287 | BID:73227 | View |
709729 | 77550 | CVE-2015-0287 | URL:http://www.securityfocus.com/bid/73227 | View |
709730 | 77550 | CVE-2015-0287 | SECTRACK:1031929 | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
6497 | JVNDB-2015-001817 | Adobe Flash Player における任意のコードを実行される脆弱性 | Adobe Flash Player には、任意のコードを実行される、またはサービス運用妨害 (メモリ破損) 状態にされる脆弱性が存在します。 | CVE-2015-0339 | 77550 | 10 | http://jvndb.jvn.jp/ja/contents/2015/JVNDB-2015-001817.html | View |