CVE-2016-7052
published 2016-09-26CVE-2016-7052: crypto/x509/x509_vfy.c in OpenSSL 1.0.2i allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) by triggering a…
PriorityP344high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
30.22%
98.0th percentile
crypto/x509/x509_vfy.c in OpenSSL 1.0.2i allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) by triggering a CRL operation.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | openssl | < openssl 1.0.2j-1 (bookworm) | openssl 1.0.2j-1 (bookworm) |
| nodejs | node.js | 4.0.0 – 4.1.2 | — |
| nodejs | node.js | >= 4.2.0 < 4.6.0 | 4.6.0 |
| nodejs | node.js | >= 6.0.0 < 6.7.0 | 6.7.0 |
| novell | suse_linux_enterprise_module_for_web_scripting | — | — |
| openssl | openssl | — | — |
| openssl | openssl | >= 0 < 1.0.2j-1 | 1.0.2j-1 |
| openssl | openssl | >= 0 < 1.0.2j-1 | 1.0.2j-1 |
| openssl | openssl | >= 0 < 1.0.2j-1 | 1.0.2j-1 |
| openssl | openssl | >= 0 < 1.0.2j-1 | 1.0.2j-1 |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv7.5HIGH
vendor_debian7.5HIGH
vendor_redhat7.5HIGH
vendor_cisco5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
BSD
FreeBSD-SA-16:27.openssl: Regression in OpenSSL suite
bsd_advisories·2016-10-10·CVSS 7.5
CVE-2016-7052 [HIGH] FreeBSD-SA-16:27.openssl: Regression in OpenSSL suite
FreeBSD-SA-16:27.openssl Security Advisory
The FreeBSD Project
Topic: Regression in OpenSSL suite
Category: contrib
Module: openssl
Announced: 2016-10-10
Credits: OpenSSL Project
Affects: FreeBSD 11.0
Corrected: 2016-09-26 14:30:19 UTC (stable/11, 11.0-STABLE)
2016-09-26 20:26:19 UTC (releng/11.0, 11.0-RELEASE-p1)
CVE Name: CVE-2016-7052
For general information regarding FreeBSD Security Advisories,
including descriptions of the fields above, security branches, and the
following sections, please visit .
I. Background
FreeBSD includes software from the OpenSSL Project. The OpenSSL Project is
a collaborative effort to develop a robust, commercial-grade, full-featured
Open Source toolkit implementing the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols as
Cisco
Multiple Vulnerabilities in OpenSSL Affecting Cisco Products: September 2016
vendor_cisco·2016-09-27·CVSS 5.5
CVE-2016-2177 [MEDIUM] CWE-119 Multiple Vulnerabilities in OpenSSL Affecting Cisco Products: September 2016
Multiple Vulnerabilities in OpenSSL Affecting Cisco Products: September 2016
On September 22, 2016, the OpenSSL Software Foundation released an advisory that describes 14 vulnerabilities. Of these 14 vulnerabilities, the OpenSSL Software Foundation classifies one as “Critical Severity,” one as “Moderate Severity,” and the other 12 as “Low Severity.”
Subsequently, on September 26, the OpenSSL Software Foundation released an additional advisory that describes two new vulnerabilities. These vulnerabilities affect the OpenSSL versions that were released to address the vulnerabilities disclosed in the previous advisory. One of the new vulnerabilities was rated as “High Severity” and the other as “Moderate Severity.”
Of the 16 released vulnerabilities:
Fourteen track issues that could resu
Red Hat
openssl: Missing CRL sanity check
vendor_redhat·2016-09-26·CVSS 7.5
CVE-2016-7052 [HIGH] CWE-476 openssl: Missing CRL sanity check
openssl: Missing CRL sanity check
crypto/x509/x509_vfy.c in OpenSSL 1.0.2i allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) by triggering a CRL operation.
Package: openssl (Red Hat Enterprise Linux 4) - Not affected
Package: openssl (Red Hat Enterprise Linux 5) - Not affected
Package: openssl097a (Red Hat Enterprise Linux 5) - Not affected
Package: openssl (Red Hat Enterprise Linux 6) - Not affected
Package: openssl098e (Red Hat Enterprise Linux 6) - Not affected
Package: openssl (Red Hat Enterprise Linux 7) - Not affected
Package: openssl098e (Red Hat Enterprise Linux 7) - Not affected
Package: openssl (Red Hat JBoss Enterprise Application Platform 5) - Not affected
Package: openssl (Red Hat JBoss Enterprise Application Platfo
Debian
CVE-2016-7052: openssl - crypto/x509/x509_vfy.c in OpenSSL 1.0.2i allows remote attackers to cause a deni...
vendor_debian·2016·CVSS 7.5
CVE-2016-7052 [HIGH] CVE-2016-7052: openssl - crypto/x509/x509_vfy.c in OpenSSL 1.0.2i allows remote attackers to cause a deni...
crypto/x509/x509_vfy.c in OpenSSL 1.0.2i allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) by triggering a CRL operation.
Scope: local
bookworm: resolved (fixed in 1.0.2j-1)
bullseye: resolved (fixed in 1.0.2j-1)
forky: resolved (fixed in 1.0.2j-1)
sid: resolved (fixed in 1.0.2j-1)
trixie: resolved (fixed in 1.0.2j-1)
Cisco
Multiple Vulnerabilities in OpenSSL Affecting Cisco Products: September 2016
vendor_cisco
CVE-2016-7052 Multiple Vulnerabilities in OpenSSL Affecting Cisco Products: September 2016
CVE-2016-7052: Multiple Vulnerabilities in OpenSSL Affecting Cisco Products: September 2016
On September 22, 2016, the OpenSSL Software Foundation released an advisory that describes 14 vulnerabilities. Of these 14 vulnerabilities, the OpenSSL Software Foundation classifies one as “Critical Severity,” one as “Moderate Severity,” and the other 12 as “Low Severity.” Subsequently, on September 26, the OpenSSL Software Foundation released an additional advisory that describes two new vulnerabilities. These vulnerabilities affect the OpenSSL versions that were released to address the vulnerabilities disclosed in the previous advisory. One of the new vulnerabilities was rated as “High Severity” and the other as “Moderate Severity.” Of the 16 released vulnerabilities: Fourteen track issues that c
GHSA
GHSA-9wm3-5vv7-j93j: crypto/x509/x509_vfy
ghsa_unreviewed·2022-05-14
CVE-2016-7052 [HIGH] CWE-476 GHSA-9wm3-5vv7-j93j: crypto/x509/x509_vfy
crypto/x509/x509_vfy.c in OpenSSL 1.0.2i allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) by triggering a CRL operation.
OSV
CVE-2016-7052: crypto/x509/x509_vfy
osv·2016-09-26·CVSS 7.5
CVE-2016-7052 [HIGH] CVE-2016-7052: crypto/x509/x509_vfy
crypto/x509/x509_vfy.c in OpenSSL 1.0.2i allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) by triggering a CRL operation.
No detection rules found.
No public exploits indexed.
Tenable
[R3] LCE 5.0.0 Fixes Multiple Third-party Library Vulnerabilities
blogs_tenable·2017-01-31
[R3] LCE 5.0.0 Fixes Multiple Third-party Library Vulnerabilities
## Cloud Exposure
Tenable Cloud Security (CNAPP) Request a demo
Tenable Cloud Vulnerability Management Request a demo
Tenable CIEM Request a demo
Secure your cloud
## Vulnerability Exposure
Tenable Vulnerability Management Try for free
Tenable Security Center Request a demo
Tenable Web App Scanning Try for free
Tenable Patch Management Request a demo
Tenable Enclave Security Request a demo
Tenable Attack Surface Management Request a demo
Tenable Nessus Try for free
## AI Exposure
Tenable AI Exposure Request a demo
## OT/IoT Exposure
Tenable OT Security Request a demo
## Identity Exposure
Tenable Identity Exposure Request a demo
## Business needs
Active Directory
AI Security Posture Management (AI-SPM)
AWS security
Azure security
Cloud Security Posture Man
Tenable
[R7] Nessus 6.9 Fixes Multiple Vulnerabilities
blogs_tenable·2016-10-25
[R7] Nessus 6.9 Fixes Multiple Vulnerabilities
## Cloud Exposure
Tenable Cloud Security (CNAPP) Request a demo
Tenable Cloud Vulnerability Management Request a demo
Tenable CIEM Request a demo
Secure your cloud
## Vulnerability Exposure
Tenable Vulnerability Management Try for free
Tenable Security Center Request a demo
Tenable Web App Scanning Try for free
Tenable Patch Management Request a demo
Tenable Enclave Security Request a demo
Tenable Attack Surface Management Request a demo
Tenable Nessus Try for free
## AI Exposure
Tenable AI Exposure Request a demo
## OT/IoT Exposure
Tenable OT Security Request a demo
## Identity Exposure
Tenable Identity Exposure Request a demo
## Business needs
Active Directory
AI Security Posture Management (AI-SPM)
AWS security
Azure security
Cloud Security Posture Man
Qualys
Problem with OpenSSL Patches of September 22, 2016 | Qualys
blogs_qualys·2016-09-26·CVSS 9.8
CVE-2016-6309 [CRITICAL] Problem with OpenSSL Patches of September 22, 2016 | Qualys
Today, OpenSSL has released an update advising of a problem with patches that was released last week on September 22.
The first offending patch was for CVE-2016-6309, and it could result in a crash or even execution of attacker-supplied code resulting in compromise of the patched machine. This issue only affects OpenSSL 1.1.0a, released on 22nd September 2016. As a result OpenSSL 1.1.0 users should upgrade to 1.1.0b.
The second offending patch was for CVE-2016-7052, and if the patch is installed, it could allow attackers to cause a denial of service condition leading to a crash. This issue affects only OpenSSL 1.0.2i, released on 22nd September 2016. As a result OpenSSL 1.0.2i users should upgrade to 1.0.2j.
### Related
Qualys
Problem with OpenSSL Patches of September 22, 2016 | Qualys
blogs_qualys·2016-09-26·CVSS 9.8
CVE-2016-6309 [CRITICAL] Problem with OpenSSL Patches of September 22, 2016 | Qualys
Today, OpenSSL has released an update advising of a problem with patches that was released last week on September 22.
The first offending patch was for CVE-2016-6309, and it could result in a crash or even execution of attacker-supplied code resulting in compromise of the patched machine. This issue only affects OpenSSL 1.1.0a, released on 22nd September 2016. As a result OpenSSL 1.1.0 users should upgrade to 1.1.0b.
The second offending patch was for CVE-2016-7052, and if the patch is installed, it could allow attackers to cause a denial of service condition leading to a crash. This issue affects only OpenSSL 1.0.2i, released on 22nd September 2016. As a result OpenSSL 1.0.2i users should upgrade to 1.0.2j.
## Related content
Bugzilla
CVE-2016-7052 openssl: Missing CRL sanity check
bugzilla·2016-09-26·CVSS 7.5
CVE-2016-7052 [HIGH] CVE-2016-7052 openssl: Missing CRL sanity check
CVE-2016-7052 openssl: Missing CRL sanity check
Quoting form the OpenSSL upstream advisory:
Missing CRL sanity check (CVE-2016-7052)
Severity: Moderate
This issue only affects OpenSSL 1.0.2i, released on 22nd September 2016.
A bug fix which included a CRL sanity check was added to OpenSSL 1.1.0
but was omitted from OpenSSL 1.0.2i. As a result any attempt to use
CRLs in OpenSSL 1.0.2i will crash with a null pointer exception.
OpenSSL 1.0.2i users should upgrade to 1.0.2j
The issue was reported to OpenSSL on 22nd September 2016 by Bruce Stephens and
Thomas Jakobi. The fix was developed by Matt Caswell of the OpenSSL development
team.
External References:
https://www.openssl.org/news/secadv/20160926.txt
Discussion:
Upstream commit:
https://git.openssl.org/?p=openssl.git;a=commit
http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10759http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00013.htmlhttp://www-01.ibm.com/support/docview.wss?uid=swg21995039http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.htmlhttp://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.htmlhttp://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.htmlhttp://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.htmlhttp://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.htmlhttp://www.securityfocus.com/bid/93171http://www.securitytracker.com/id/1036885https://bto.bluecoat.com/security-advisory/sa132https://git.openssl.org/?p=openssl.git%3Ba=commit%3Bh=6e629b5be45face20b4ca71c4fcbfed78b864a2ehttps://kc.mcafee.com/corporate/index?page=content&id=SB10171https://security.FreeBSD.org/advisories/FreeBSD-SA-16:27.openssl.aschttps://security.gentoo.org/glsa/201612-16https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03856en_ushttps://www.openssl.org/news/secadv/20160926.txthttps://www.tenable.com/security/tns-2016-16https://www.tenable.com/security/tns-2016-19https://www.tenable.com/security/tns-2016-20http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10759http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00013.htmlhttp://www-01.ibm.com/support/docview.wss?uid=swg21995039http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.htmlhttp://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.htmlhttp://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.htmlhttp://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.htmlhttp://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.htmlhttp://www.securityfocus.com/bid/93171http://www.securitytracker.com/id/1036885https://bto.bluecoat.com/security-advisory/sa132https://git.openssl.org/?p=openssl.git%3Ba=commit%3Bh=6e629b5be45face20b4ca71c4fcbfed78b864a2ehttps://kc.mcafee.com/corporate/index?page=content&id=SB10171https://security.FreeBSD.org/advisories/FreeBSD-SA-16:27.openssl.aschttps://security.gentoo.org/glsa/201612-16https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03856en_ushttps://www.openssl.org/news/secadv/20160926.txthttps://www.tenable.com/security/tns-2016-16https://www.tenable.com/security/tns-2016-19https://www.tenable.com/security/tns-2016-20
2016-09-26
Published