VYPR

Communications Eagle Lnp Application Processor

Sign in to watch

by Oracle Corporation

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2017-3730Hig0.567.50.53May 4, 2017In OpenSSL 1.1.0 before 1.1.0d, if a malicious server supplies bad parameters for a DHE or ECDHE key exchange then this can result in the client attempting to dereference a NULL pointer leading to a client crash. This could be exploited in a Denial of Service attack.
CVE-2015-02350.100.87Jan 28, 2015Heap-based buffer overflow in the __nss_hostname_digits_dots function in glibc 2.2, and other 2.x versions before 2.18, allows context-dependent attackers to execute arbitrary code via vectors related to the (1) gethostbyname or (2) gethostbyname2 function, aka "GHOST."