Description
The X509_NAME_oneline function in crypto/x509/x509_obj.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to obtain sensitive information from process stack memory or cause a denial of service (buffer over-read) via crafted EBCDIC ASN.1 data.
Remediation
References
Related Vulnerabilities
Oracle Database Server Other Vulnerability (CVE-2005-3443)
WordPress Plugin Advanced Contact form 7 DB Arbitrary File Upload (1.4.4)
WordPress Plugin Slickr Flickr Cross-Site Scripting (2.8.1)
WordPress 4.5.x Multiple Vulnerabilities (4.5 - 4.5.9)
WordPress Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-6635)