Improper Certificate Validation in openssl
Modified: 11/8/2023
package
pkg:crates.io/openssl
Improper Certificate Validation in openssl
Modified: 11/8/2023
`openssl` `X509NameBuilder::build` returned object is not thread safe
Modified: 11/8/2023
rust-openssl Use-After-Free in `Md::fetch` and `Cipher::fetch`
Modified: 9/10/2026
`openssl` `X509Extension::new` and `X509Extension::new_nid` null pointer dereference
Modified: 11/8/2023
rust-openssl has incorrect bounds assertion in aes key wrap
Modified: 9/10/2026
`openssl` `SubjectAlternativeName` and `ExtendedKeyUsage::other` allow arbitrary file read
Modified: 11/8/2023
rust-openssl: rustMdCtxRef::digest_final() writes past caller buffer with no length check
Modified: 9/10/2026
rust-openssl: Unchecked callback length in PSK/cookie trampolines leaks adjacent memory to peer
Modified: 9/10/2026
rust-openssl: Potential out-of-bounds write in `CipherCtxRef::cipher_update_inplace` for AES-KW-PAD ciphers
Modified: 9/10/2026
rust-openssl: Deriver::derive and PkeyCtxRef::derive can overflow short buffers on OpenSSL 1.1.1
Modified: 9/10/2026
openssl's `MemBio::get_buf` has undefined behavior with empty buffers
Modified: 9/10/2026
rust-openssl ssl::select_next_proto use after free
Modified: 9/10/2026
`openssl` `X509VerifyParamRef::set_host` buffer over-read
Modified: 9/10/2026
Use after free in openssl
Modified: 11/8/2023
rust-opennssl has an Out-of-bounds read in PEM password callback when returning an oversized length
Modified: 9/10/2026
rust-openssl has undefined behavior in X509Ref::ocsp_responders for certificates with non-UTF-8 OCSP URLs
Modified: 9/10/2026
`openssl` `X509StoreRef::objects` is unsound
Modified: 9/10/2026
rust-openssl vulnerable to heap buffer overflow when encrypting with AES key-wrap-with-padding
Modified: 9/10/2026
SSL/TLS MitM vulnerability due to insecure defaults
Modified: 2/4/2026
Use after free in CMS Signing
Modified: 11/8/2023
`openssl` `X509NameBuilder::build` returned object is not thread safe
Modified: 11/8/2023
`openssl` `SubjectAlternativeName` and `ExtendedKeyUsage::other` allow arbitrary file read
Modified: 11/8/2023
`openssl` `X509Extension::new` and `X509Extension::new_nid` null pointer dereference
Modified: 11/8/2023
`openssl` `X509VerifyParamRef::set_host` buffer over-read
Modified: 10/28/2025
`openssl` `X509StoreRef::objects` is unsound
Modified: 2/10/2024
`MemBio::get_buf` has undefined behavior with empty buffers
Modified: 10/28/2025
ssl::select_next_proto use after free
Modified: 10/28/2025
Use-After-Free in `Md::fetch` and `Cipher::fetch`
Modified: 10/28/2025