CVE-2012-0027
EPSS 0.70%Published: 1/6/2012Modified: 4/28/2026
Also known as:DEBIAN-CVE-2012-0027
Description
The GOST ENGINE in OpenSSL before 1.0.0f does not properly handle invalid parameters for the GOST block cipher, which allows remote attackers to cause a denial of service (daemon crash) via crafted data from a TLS client.
Affected packages (1)
- Debian/opensslfrom 0, < 1.0.0f-1