Skip to content

openssl CVE-2023-0217

Moderate
bcressey published GHSA-fmv8-rjpq-mfxx Mar 13, 2023

Package

openssl (bottlerocket-test-system)

Affected versions

< 0.0.6

Patched versions

0.0.6

Description

An invalid pointer dereference can occur in OpenSSL during read of a malformed DSA public key. Agents and clients compiled with OpenSSL may see crashes when attempting to read malformed or malicious DSA data.

Severity

Moderate

CVE ID

CVE-2023-0217

Weaknesses

No CWEs