V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsDocs
CVE-2022-3996
ANC
Medium

If an X.509 certificate contains a malformed policy constraint and policy processing is enabled, then a write lock will be taken twice recu…

CVSS
5.3
Medium
EPSS
0.00
p33
Published
2022-01-01
Updated
2022-01-01
Description

If an X.509 certificate contains a malformed policy constraint and policy processing is enabled, then a write lock will be taken twice recursively. On some operating systems (most widely: Windows) this results in a denial of service when the affected process hangs. Policy processing being enabled on a publicly facing server is not considered to be a common setup. Policy processing is enabled by passing the `-policy' argument to the command line utilities or by calling the `X509_VERIFY_PARAM_set1_policies()' function. Update (31 March 2023): The description of the policy processing enablement was corrected based on CVE-2023-0466.

Tags · CWE
CWE-609
CWE-667
CAPEC-25
CAPEC-26
CAPEC-27
Affected products
Edk2Edk2Edk2Edk2Edk2Edk2Edk2Edk2Edk2Edk2Edk2Edk2NodejsNodejsNodejsNodejsNodejsNodejs
CVSS vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
Timeline
2022-01-01
Published
2022-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: H
High (H)
Privileges Required
PR: L
Low (L)
User Interaction
UI: N
None (N)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: N
None (N)
Integrity Impact
I: N
None (N)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
0.001 · p33
Known exploited (KEV)
No
MITRE ATT&CK
Inferred via CAPEC
Known exploits — Сканер-ВС
No Сканер-ВС checks registered for this vulnerability yet.
Affected software
ProductVendorStatus
Tracked
Tracked
edk2Tracked
edk2Tracked
edk2Tracked
edk2Tracked
edk2Tracked
edk2Tracked
edk2Tracked
edk2Tracked
edk2Tracked
edk2Tracked
edk2Tracked
edk2Tracked
nodejsTracked
nodejsTracked
nodejsTracked
nodejsTracked
nodejsTracked
nodejsTracked
Source databases
ANC
AST
DEB
CVE
UBU