CVE-2023-0217NULL Pointer Dereference in Openssl

Severity
7.5HIGHNVD
OSV4.9
EPSS
0.6%
top 31.80%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 8
Latest updateMar 6

Description

An invalid pointer dereference on read can be triggered when an application tries to check a malformed DSA public key by the EVP_PKEY_public_check() function. This will most likely lead to an application crash. This function can be called on public keys supplied from untrusted sources which could allow an attacker to cause a denial of service attack. The TLS implementation in OpenSSL does not call this function but applications might call the function if there are additional security requiremen

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages15 packages

debiandebian/openssl< openssl 3.0.8-1 (bookworm)
CVEListV5openssl/openssl3.0.03.0.8
Alpineopenssl/openssl< 3.0.8-r0+6
Debianopenssl/openssl< 3.0.8-1+2
Ubuntuopenssl/openssl< 1.1.1-1ubuntu2.1~18.04.21+2

🔴Vulnerability Details

6
OSV
CVE-2023-0217: An invalid pointer dereference on read can be triggered when an application tries to check a malformed DSA public key by the EVP_PKEY_public_check() f2023-02-08
GHSA
openssl-src subject to NULL dereference validating DSA public key2023-02-08
OSV
CVE-2023-0217: An invalid pointer dereference on read can be triggered when an application tries to check a malformed DSA public key by the EVP_PKEY_public_check() f2023-02-08
OSV
openssl-src subject to NULL dereference validating DSA public key2023-02-08
OSV
openssl vulnerabilities2023-02-07

📋Vendor Advisories

7
CISA ICS
Hitachi Energy PCU4002025-03-06
CISA ICS
Siemens SINEC NMS2024-02-15
CISA ICS
Siemens SCALANCE Family Products2023-11-16
Palo Alto
PAN-SA-2023-0001 Impact of OpenSSL Vulnerabilities Disclosed Feb 7, 20232023-02-08
Ubuntu
OpenSSL vulnerabilities2023-02-07

📄Research Papers

1
arXiv
Exploring the Limits of ChatGPT in Software Security Applications2023-12-08
CVE-2023-0217 — NULL Pointer Dereference in Openssl | cvebase