USN-3813-1
Dashboard / Vulnerabilities / USN-3813-1
USN-3813-1
Summary: pyopenssl vulnerabilities
Details: It was discovered that pyOpenSSL incorrectly handled memory when handling X509 objects. A remote attacker could use this issue to cause pyOpenSSL to crash, resulting in a denial of service, or possibly execute arbitrary code. (CVE-2018-1000807) It was discovered that pyOpenSSL incorrectly handled memory when performing operations on a PKCS #12 store. A remote attacker could possibly use this issue to cause pyOpenSSL to consume resources, resulting in a denial of service. (CVE-2018-1000808)
References: https://ubuntu.com/security/notices/USN-3813-1, https://ubuntu.com/security/CVE-2018-1000807, https://ubuntu.com/security/CVE-2018-1000808
Affected packages
Package
Name: pyopenssl
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
