Description
An exploitable heap buffer overflow vulnerability exists in the X509 certificate parsing functionality of InsideSecure MatrixSSL 3.8.7b. A specially crafted x509 certificate can cause a buffer overflow on the heap resulting in remote code execution. To trigger this vulnerability, a specially crafted x509 certificate must be presented to the vulnerable client or server application when initiating secure connection.
Published: 2017-06-22
Score: 9.8 Critical
EPSS: 3.4% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2017-11924 An exploitable heap buffer overflow vulnerability exists in the X509 certificate parsing functionality of InsideSecure MatrixSSL 3.8.7b. A specially crafted x509 certificate can cause a buffer overflow on the heap resulting in remote code execution. To trigger this vulnerability, a specially crafted x509 certificate must be presented to the vulnerable client or server application when initiating secure connection.
History

No history.

Subscriptions

Matrixssl Matrixssl
cve-icon MITRE

Status: PUBLISHED

Assigner: talos

Published:

Updated: 2024-08-05T14:02:07.689Z

Reserved: 2016-12-01T00:00:00.000Z

Link: CVE-2017-2781

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-06-22T21:29:00.247

Modified: 2025-04-20T01:37:25.860

Link: CVE-2017-2781

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses