CVE-2016-2106

Publication date

2016-05-05 00:00:00

Family

redhat

State

PUBLISHED

Description

Integer overflow in the EVP_EncryptUpdate function in crypto/evp/evp_enc.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (heap memory corruption) via a large amount of data.