CVE-2006-7250

Modified
Published: 29 Feb 2012, 11:00
Last modified:07 Aug 2024, 20:57

Vulnerability Summary

Overall Risk (default)
low
20/100
CVSS Score
5 MEDIUM
v2.0 (nvd)
EPSS Score
2% LOW
2% probability +0.59%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

29 Feb 2012, 11:00
Published
Vulnerability first disclosed
07 Aug 2024, 20:57
Last Modified
Vulnerability information updated

Description

The mime_hdr_cmp function in crypto/asn1/asn_mime.c in OpenSSL 0.9.8t and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted S/MIME message.

CVSS Metrics

  • v2.0MEDIUMScore: 5AV:N/AC:L/Au:N/C:N/I:N/A:P

EPSS Trends

Current EPSS score: 2.00% Percentile: 84%

Affected Systems

  • UnknownOpenSSL

    ≤ 0.9.8t | 0.9.1c | 0.9.2b | 0.9.3 | 0.9.3a | 0.9.4 | 0.9.5 | 0.9.5:beta1 | 0.9.5:beta2 | 0.9.5a | 0.9.5a:beta1 | 0.9.5a:beta2 | 0.9.6 | 0.9.6:beta1 | 0.9.6:beta2 | 0.9.6:beta3 | 0.9.6a | 0.9.6a:beta1 | 0.9.6a:beta2 | 0.9.6a:beta3 | 0.9.6b | 0.9.6c | 0.9.6d | 0.9.6e | 0.9.6f | 0.9.6g | 0.9.6h | 0.9.6i | 0.9.6j | 0.9.6k | 0.9.6l | 0.9.6m | 0.9.7 | 0.9.7:beta1 | 0.9.7:beta2 | 0.9.7:beta3 | 0.9.7:beta4 | 0.9.7:beta5 | 0.9.7:beta6 | 0.9.7a | 0.9.7b | 0.9.7c | 0.9.7d | 0.9.7e | 0.9.7f | 0.9.7g | 0.9.7h | 0.9.7i | 0.9.7j | 0.9.7k | 0.9.7l | 0.9.7m | 0.9.8 | 0.9.8a | 0.9.8b | 0.9.8c | 0.9.8d | 0.9.8e | 0.9.8f | 0.9.8g | 0.9.8h | 0.9.8i | 0.9.8j | 0.9.8k | 0.9.8l | 0.9.8m | 0.9.8m:beta1 | 0.9.8n | 0.9.8o | 0.9.8p | 0.9.8q | 0.9.8r | 0.9.8s

References (15)