Product: Solaris 10 Operating System OpenSolaris

A security vulnerability in the ASN.1 handling in the OpenSSL product (see openssl(5)) shipped with Solaris may allow a local or remote unprivileged user to cause a Denial of Service (DoS) to applications calling the "ASN1_STRING_print_ex()" printing function.

Additional information regarding this issue can be found in the following document:


State: Resolved
First released: 29-Apr-2009
Permalink | Comments [1]

Comments:

Hi Chandan Bellur Nandakumaraiah,

May I know if there any Solaris OS utility will call the "ASN1_STRING_print_ex()" printing function. Also, is there anyway to check if the running application will call this function?

Thanks & Regards
Paul

Posted by Paul Liong on May 04, 2009 at 12:42 AM PDT #

Post a Comment:

Comments are closed for this entry.