CVE-2016-2106

Scores

EPSS

0.673medium67.3%
0%20%40%60%80%100%

Percentile: 67.3%

CVSS

5.6medium3.x
0246810

CVSS Score: 5.6/10

All CVSS Scores

CVSS 3.x
5.6

Vector: CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L

CVSS 2.0
5.1

Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P

Description

Integer overflow in the EVP_EncryptUpdate function in crypto/evp/evp_enc.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (heap memory corruption) via a large amount of data.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

debiannvdredhatubuntu

CWEs

CWE-189CWE-190

Related Vulnerabilities

Vulnerable Software (40)

Type: Configuration

Product: httpd

Operating System: rhel

Trait:
{  "fixed": "2.2.26-54.ep6.el6"}

Source: redhat

Type: Configuration

Product: httpd22

Operating System: rhel

Trait:
{  "fixed": "2.2.26-56.ep6.el7"}

Source: redhat

Type: Configuration

Product: jbcs-httpd24

Operating System: rhel

Trait:
{  "fixed": "1-3.jbcs.el6"}

Source: redhat

Type: Configuration

Product: jbcs-httpd24

Operating System: rhel

Trait:
{  "fixed": "1-3.jbcs.el7"}

Source: redhat

Type: Configuration

Product: jbcs-httpd24-openssl

Operating System: rhel

Trait:
{  "fixed": "1.0.2h-4.jbcs.el6"}

Source: redhat

Type: Configuration

Product: jbcs-httpd24-openssl

Operating System: rhel

Trait:
{  "fixed": "1.0.2h-4.jbcs.el7"}

Source: redhat

Type: Configuration

Product: mod_cluster

Operating System: rhel

Trait:
{  "fixed": "1.2.13-1.Final_redhat_1.1.ep6.el6"}

Source: redhat

Type: Configuration

Product: mod_cluster

Operating System: rhel

Trait:
{  "fixed": "1.2.13-1.Final_redhat_1.1.ep6.el7"}

Source: redhat

Type: Configuration

Product: mod_cluster-native

Operating System: rhel

Trait:
{  "fixed": "1.2.13-3.Final_redhat_2.ep6.el6"}

Source: redhat

Type: Configuration

Product: mod_cluster-native

Operating System: rhel

Trait:
{  "fixed": "1.2.13-3.Final_redhat_2.ep6.el7"}

Source: redhat

Type: Configuration

Product: mod_jk

Operating System: rhel

Trait:
{  "fixed": "1.2.41-2.redhat_3.ep6.el6"}

Source: redhat

Type: Configuration

Product: mod_jk

Operating System: rhel

Trait:
{  "fixed": "1.2.41-2.redhat_3.ep6.el7"}

Source: redhat

Type: Configuration

Product: openssl

Operating System: rhel 6

Trait:
{  "fixed": "1.0.1e-48.el6_8.1"}

Source: redhat

Type: Configuration

Product: openssl

Operating System: rhel 6.7

Trait:
{  "fixed": "1.0.1e-42.el6_7.5"}

Source: redhat

Type: Configuration

Product: openssl

Operating System: rhel 7

Trait:
{  "fixed": "1.0.1e-51.el7_2.5"}

Source: redhat

Type: Configuration

Product: openssl

Operating System: ubuntu artful 17.10

Trait:
{  "fixed": "1.0.2g-1ubuntu5"}

Source: ubuntu

Type: Configuration

Product: openssl

Operating System: ubuntu bionic 18.04

Trait:
{  "fixed": "1.0.2g-1ubuntu5"}

Source: ubuntu

Type: Configuration

Product: openssl

Operating System: ubuntu cosmic 18.10

Trait:
{  "fixed": "1.0.2g-1ubuntu5"}

Source: ubuntu

Type: Configuration

Product: openssl

Operating System: ubuntu disco 19.04

Trait:
{  "fixed": "1.0.2g-1ubuntu5"}

Source: ubuntu

Type: Configuration

Product: openssl

Operating System: ubuntu trusty 14.04

Trait:
{  "fixed": "1.0.1f-1ubuntu2.19"}

Source: ubuntu