header

Integer overflow vulnerability in OpenSSL’s crypto/mdc2/mdc2dgst.c (CVE-2016-6303)


Mar 13, 2023
Share

Integer overflow vulnerability in the MDC2_Update function in OpenSSL's crypto/mdc2/mdc2dgst.c (CVE-2016-6303)

Summary

This issue is being investigated by Buffalo Engineering.

Vulnerability ID Vulnerability Overview
CVE-2016-6303 Integer overflow in the MDC2_Update function in crypto/mdc2/mdc2dgst.c in OpenSSL before 1.1.0 allows remote attackers to cause a denial of service (out-of-bounds write and application crash) or possibly have unspecified other impact via unknown vectors.

Affected Supported TeraStations

Pending

Back to Security Notices

Date Description
3/10/2022 Initial release
X