Known vulnerabilities in openssl (Debian package) - page 3

Vendor: Debian
Software CPE: cpe:2.3:o:debian:openssl_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 69
Public exploits: 6
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting openssl (Debian package) openssl (Debian package) is affected by 69 known vulnerabilities: 6 high, 39 medium, 24 low Critical High Medium Low

Vulnerabilities (69)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU76651 - Resource Management Errors
CVE-2023-2650
CWE-399 Medium
No
No
1.1.1n-0+deb11u5 30.05.2023 SB2023053040
SB2023053044
SB2023053045
and 131 more
#VU74149 - Security Features
CVE-2023-0466
CWE-254 Low
No
No
1.1.1n-0+deb11u5 28.03.2023 SB2023032241
SB2023040666
SB2023040730
and 86 more
#VU74148 - Improper Verification of Cryptographic Signature
CVE-2023-0465
CWE-347 Low
No
No
1.1.1n-0+deb11u5 28.03.2023 SB2023032241
SB2023040666
SB2023040730
and 100 more
#VU71996 - Double Free
CVE-2022-4450
CWE-415 Medium
No
No
1.1.1n-0+deb11u4 07.02.2023 SB2023020742
SB2023020748
SB2023020771
and 180 more
#VU71995 - Use After Free
CVE-2023-0215
CWE-416 Medium
No
No
1.1.1n-0+deb11u4 07.02.2023 SB2023020742
SB2023020747
SB2023020748
and 209 more
#VU71993 - Information Exposure Through Timing Discrepancy
CVE-2022-4304
CWE-208 Medium
No
No
1.1.1n-0+deb11u4 07.02.2023 SB2023020742
SB2023020748
SB2023020767
and 222 more
#VU71992 - Type confusion
CVE-2023-0286
CWE-843 High
No
No
1.1.1n-0+deb11u4 07.02.2023 SB2023020742
SB2023020747
SB2023020748
and 223 more
#VU64922 - Missing Encryption of Sensitive Data
CVE-2022-2097
CWE-311 Low
No
No
1.1.1n-0+deb11u4 05.07.2022 SB2022070509
SB2022070522
SB2022070531
and 112 more
#VU64559 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-2068
CWE-78 Medium
No
No
1.1.1n-0+deb10u3, 1.1.1n-0+deb11u3 21.06.2022 SB2022062120
SB2022062125
SB2022062236
and 135 more
#VU62765 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-1292
CWE-78 Medium
Available
No
1.1.1n-0+deb10u2, 1.1.1n-0+deb11u2 03.05.2022 SB2022050315
SB2022050436
SB2022050503
and 141 more
#VU61391 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-0778
CWE-835 Medium
Available
No
1.1.1k-1+deb11u2, 1.1.1d-0+deb10u8 15.03.2022 SB2022031520
SB2022031522
SB2022031611
and 238 more
#VU60166 - Cryptographic Issues
CVE-2021-4160
CWE-310 Low
No
No
1.1.1k-1+deb11u2, 1.1.1d-0+deb10u8 28.01.2022 SB2022012811
SB2022031611
SB2022042517
and 29 more
#VU56064 - Out-of-bounds read
CVE-2021-3712
CWE-125 Medium
No
No
1.1.1k-1+deb11u1, 1.1.1d-0+deb10u7 24.08.2021 SB2021082414
SB2021082508
SB2021082510
and 142 more
#VU56063 - Memory corruption
CVE-2021-3711
CWE-119 High
No
No
1.1.1k-1+deb11u1, 1.1.1d-0+deb10u7 24.08.2021 SB2021082414
SB2021082508
SB2021082510
and 53 more
#VU51733 - NULL Pointer Dereference
CVE-2021-3449
CWE-476 Medium
Available
No
1.1.1d-0+deb10u6 25.03.2021 SB2021032518
SB2021032602
SB2021032617
and 56 more
#VU50745 - Improper input validation
CVE-2021-23840
CWE-20 Medium
No
No
1.1.1d-0+deb10u5 17.02.2021 SB2021021702
SB2021021817
SB2021022420
and 83 more
#VU50740 - NULL Pointer Dereference
CVE-2021-23841
CWE-476 Medium
No
No
1.1.1d-0+deb10u5 17.02.2021 SB2021021702
SB2021021817
SB2021022420
and 66 more
#VU48896 - NULL Pointer Dereference
CVE-2020-1971
CWE-476 Medium
Available
No
1.1.1d-0+deb10u4 08.12.2020 SB2020120852
SB2020120903
SB2020120905
and 91 more
#VU27061 - NULL Pointer Dereference
CVE-2020-1967
CWE-476 Medium
Available
No
1.1.1d-0+deb10u3 21.04.2020 SB2020042130
SB2020042131
SB2020042326
and 19 more
#VU23451 - Cryptographic Issues
CVE-2019-1551
CWE-310 Low
No
No
1.1.1d-0+deb10u5 08.12.2019 SB2019120802
SB2019122101
SB2019122807
and 24 more


Showing elements 41 - 60 out of 69