CVE-2016-2176Improper Restriction of Operations within the Bounds of a Memory Buffer in Openssl

Severity
8.2HIGHNVD
EPSS
7.8%
top 8.02%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 5
Latest updateNov 7

Description

The X509_NAME_oneline function in crypto/x509/x509_obj.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to obtain sensitive information from process stack memory or cause a denial of service (buffer over-read) via crafted EBCDIC ASN.1 data.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:HExploitability: 3.9 | Impact: 4.2

Affected Packages7 packages

Alpineopenssl/openssl< 1.0.2h-r0+6
NVDopenssl/openssl1.0.1s+8
Palo Altopaloalto/pan-os

🔴Vulnerability Details

2
GHSA
GHSA-9p7f-7v7j-rq7j: The X509_NAME_oneline function in crypto/x509/x509_obj2022-05-14
OSV
CVE-2016-2176: The X509_NAME_oneline function in crypto/x509/x509_obj2016-05-05

💥Exploits & PoCs

4
Metasploit
Microsoft Exchange ProxyLogon Collector
Metasploit
Microsoft Exchange ProxyLogon Scanner
Metasploit
Microsoft Exchange ProxyShell RCE
Metasploit
Microsoft Exchange ProxyLogon RCE

📋Vendor Advisories

10
Palo Alto
PAN-SA-2024-0014 Informational Bulletin: Impact of OSS CVEs in Cortex XDR Agent2024-11-07
CISA ICS
Siemens SCALANCE X-200RNA Switch Devices2022-12-19
Palo Alto
PAN-SA-2016-0023 OpenSSL Vulnerabilities2016-09-02
Palo Alto
PAN-SA-2016-0020 OpenSSL Vulnerabilities2016-08-15
Apple
CVE-2016-2176: OS X El Capitan v10.11.6 and Security Update 2016-0042016-07-18

🕵️Threat Intelligence

1
Tenable
[R5] OpenSSL &#039;20160503&#039; Advisory Affects Tenable Products2016-05-18

💬Community

2
HackerOne
EBCDIC overread (CVE-2016-2176)2016-05-03
Bugzilla
CVE-2016-2176 openssl: EBCDIC overread in X509_NAME_oneline()2016-04-28
CVE-2016-2176 — Openssl vulnerability | cvebase