Database/Kernel, userspace & hypervisor
OpenSSL 3.0: X.509 email-address variable-length buffer overflow (DoS)
CVSS 7.5CVE-2022-3786Kernel, userspace & hypervisorcurated
Impact
X.509 email-address variable-length buffer overflow (DoS)
Who can reach it
Unauthenticated network
What to do
Package update + service restart; no reboot
References
Related entries
- OpenSSL 3.0: X.509 email-address punycode buffer overflow (4-byte stack overflow)CVE-2022-3602 · OpenSSL 3.0High
- AMD CPU (Sinkclose): Sinkclose: SMM lock bypassCVE-2023-31315 · AMD CPU (Sinkclose)High
- Linux kernel - NVMe-oF TCP target, drivers/nvme/target/tcp.c: A host sending an H2CData command with a DATALCVE-2023-52454 · Linux kernel - NVMe-oF TCP target, drivers/nvme/target/tcp.cHigh
- Linux kernel (net/tls): A receiver that holds its TCP window at zero keeps the kTLS sender blocked inside tx_lockCVE-2023-54306 · Linux kernel (net/tls)High
- Xen (x86 speculation): Incorrect logic for BTC/SRSO mitigationsCVE-2024-31142 · Xen (x86 speculation)High
- AMD CPU (EntrySign): Improper signature verification in the AMD CPU microcode patch loaderCVE-2024-36347 · AMD CPU (EntrySign)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.