CVE-2016-2177 Undefined pointer arithmetic in SSL code

Disclosed: 2016-09-20 10:27:41 By guido To ibb
Unknown
Vulnerability Details
1.0.2 version here: https://github.com/openssl/openssl/commit/a004e72b95835136d3f1ea90517f706c24c03da7 1.0.1 version here: https://github.com/openssl/openssl/commit/6f35f6deb5ca7daebe289f86477e061ce3ee5f46 ``` These will get listed in the next security advisory and rolled up in the next release whenever that is. ``` according to the OpenSSL team.
Actions
View on HackerOne
Report Stats
  • Report ID: 142472
  • State: Closed
  • Substate: resolved
  • Upvotes: 5
Share this report