OpenSSL records
307 published records for vendor openssl.
Researcher profile
- Entered KEV
- 1 · 0.3%
- Weaponized
- 10 · 3.3%
- Pre-auth RCE
- 19
- With a fix record
- 92.5%
- Median publish → KEV
- 2949 days
Recurring classes
- CWE-476 NULL Pointer Dereference32
- CWE-310 Cryptographic Issues29
- CWE-399 Resource Management Errors22
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor15
- CWE-125 Out-of-bounds Read14
- CWE-295 Improper Certificate Validation14
The weakness classes this vendor ships most often: where to look.
CWEAll records
307 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
90Now | CVE-2014-0160Weaponized | The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 before 1.0.1g do not properly handle Heartbeat Extension packets, which allows remopenssl · openssl · CWE-125 | High7.5 | KEV | 100.0% | Apr 7, 2014 |
65This week | CVE-2021-3711No exploit | SM2 Decryption Buffer Overflowopenssl · openssl · CWE-120 | Critical9.8 | — | 87.8% | Aug 24, 2021 |
65This week | CVE-2003-0545No exploit | Double free vulnerability in OpenSSL 0.9.7 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code openssl · openssl · CWE-415 | Critical9.8 | — | 87.5% | Nov 17, 2003 |
65This week | CVE-2009-3555Proof of concept | The TLS protocol, and the SSL protocol 3.0 and possibly earlier, as used in Microsoft Internet Information Services (IIS) 7.0, mod_ssl in thapache · http server · CWE-295 | Critical9.8 | — | 87.3% | Nov 9, 2009 |
62This week | CVE-2016-2108No exploit | The ASN.1 implementation in OpenSSL before 1.0.1o and 1.0.2 before 1.0.2c allows remote attackers to execute arbitrary code or cause a deniaopenssl · openssl · CWE-119 | Critical9.8 | — | 77.9% | May 4, 2016 |
60This week | CVE-2016-6309No exploit | statem/statem.c in OpenSSL 1.1.0a does not consider memory-block movement after a realloc call, which allows remote attackers to cause a denopenssl · openssl · CWE-416 | Critical9.8 | — | 70.2% | Sep 26, 2016 |
58Plan | CVE-2022-2068No exploit | The c_rehash script allows command injectionopenssl · openssl · CWE-78 | High7.3 | — | 95.4% | Jun 21, 2022 |
58Plan | CVE-2014-0224Weaponized | OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h does not properly restrict processing of ChangeCipherSpec messages, whiopenssl · openssl · CWE-326 | High7.4 | — | 95.3% | Jun 5, 2014 |
58Plan | CVE-2016-2183Proof of concept | The DES and Triple DES ciphers, as used in the TLS, SSH, and IPSec protocols and other protocols and products, have a birthday bound of apprredhat · jboss enterprise application platform · CWE-200 | High7.5 | — | 94.7% | Aug 31, 2016 |
58Plan | CVE-2022-3786Proof of concept | X.509 Email Address Variable Length Buffer Overflowopenssl · openssl · CWE-120 | High7.5 | — | 92.5% | Nov 1, 2022 |
57Plan | CVE-2014-0195Weaponized | The dtls1_reassemble_fragment function in d1_both.c in OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h does not properlopenssl · openssl · CWE-120 | Medium6.8 | — | 100.0% | Jun 5, 2014 |
57Plan | CVE-2022-3602Proof of concept | X.509 Email Address 4-byte Buffer Overflowopenssl · openssl · CWE-787 | High7.5 | — | 90.8% | Nov 1, 2022 |
57Plan | CVE-2002-0656Proof of concept | Buffer overflows in OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, allow remote attackers to execute arbitrary code via (1) a largopenssl · openssl | High7.5 | — | 89.8% | Aug 12, 2002 |
55Plan | CVE-2016-2842No exploit | The doapr_outch function in crypto/bio/b_print.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g does not verify that a certain memoropenssl · openssl · CWE-119 | Critical9.8 | — | 53.7% | Mar 3, 2016 |
55Plan | CVE-2006-3738No exploit | Buffer overflow in the SSL_get_shared_ciphers function in OpenSSL 0.9.7 before 0.9.7l, 0.9.8 before 0.9.8d, and earlier versions has unspeciopenssl · openssl · CWE-119 | Critical10.0 | — | 49.3% | Sep 28, 2006 |
54Plan | CVE-2022-1292Proof of concept | The c_rehash script allows command injectionsiemens · brownfield connectivity gateway · CWE-78 | High7.3 | — | 82.6% | May 3, 2022 |
53Plan | CVE-2022-2274Proof of concept | RSA implementation bug in AVX512IFMA instructionsopenssl · openssl · CWE-787 | Critical9.8 | — | 45.7% | Jul 1, 2022 |
52Plan | CVE-2015-1789No exploit | The X509_cmp_time function in crypto/x509/x509_vfy.c in OpenSSL before 0.9.8zg, 1.0.0 before 1.0.0s, 1.0.1 before 1.0.1n, and 1.0.2 before 1openssl · openssl · CWE-119 | High7.5 | — | 74.5% | Jun 12, 2015 |
52Plan | CVE-2022-0778Proof of concept | Infinite loop in BN_mod_sqrt() reachable when parsing certificatesopenssl · openssl · CWE-835 | High7.5 | — | 73.2% | Mar 15, 2022 |
52Plan | CVE-2016-2177No exploit | OpenSSL through 1.0.2h incorrectly uses pointer arithmetic for heap-buffer boundary checks, which might allow remote attackers to cause a deopenssl · openssl · CWE-190 | Critical9.8 | — | 44.5% | Jun 19, 2016 |
52Plan | CVE-2016-2182No exploit | The BN_bn2dec function in crypto/bn/bn_print.c in OpenSSL before 1.1.0 does not properly validate division results, which allows remote attaopenssl · openssl · CWE-787 | Critical9.8 | — | 44.2% | Sep 16, 2016 |
51Plan | CVE-2008-0166Proof of concept | OpenSSL 0.9.8c-1 up to versions before 0.9.8g-9 on Debian-based operating systems uses a random number generator that generates predictable openssl · openssl · CWE-338 | High7.5 | — | 70.7% | May 13, 2008 |
51Plan | CVE-2014-3512No exploit | Multiple buffer overflows in crypto/srp/srp_lib.c in the SRP implementation in OpenSSL 1.0.1 before 1.0.1i allow remote attackers to cause aopenssl · openssl · CWE-119 | High7.5 | — | 69.0% | Aug 13, 2014 |
51Plan | CVE-2025-15467Proof of concept | Stack buffer overflow in CMS (Auth)EnvelopedData parsingopenssl · openssl · CWE-787 | High8.8 | — | 52.4% | Jan 27, 2026 |
50Plan | CVE-2016-2107Proof of concept | The AES-NI implementation in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h does not consider memory allocation during a certain padding checopenssl · openssl · CWE-200 | Medium5.9 | — | 89.1% | May 4, 2016 |
- CVE-2014-016090Now
The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 before 1.0.1g do not properly handle Heartbeat Extension packets, which allows rem
HighCVSS 7.5KEVWeaponizedEPSS 100%openssl · opensslApr 7, 2014
- CVE-2021-371165This week
SM2 Decryption Buffer Overflow
CriticalCVSS 9.8No exploitEPSS 88%openssl · opensslAug 24, 2021
- CVE-2003-054565This week
Double free vulnerability in OpenSSL 0.9.7 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code
CriticalCVSS 9.8No exploitEPSS 87%openssl · opensslNov 17, 2003
- CVE-2009-355565This week
The TLS protocol, and the SSL protocol 3.0 and possibly earlier, as used in Microsoft Internet Information Services (IIS) 7.0, mod_ssl in th
CriticalCVSS 9.8Proof of conceptEPSS 87%apache · http serverNov 9, 2009
- CVE-2016-210862This week
The ASN.1 implementation in OpenSSL before 1.0.1o and 1.0.2 before 1.0.2c allows remote attackers to execute arbitrary code or cause a denia
CriticalCVSS 9.8No exploitEPSS 78%openssl · opensslMay 4, 2016
- CVE-2016-630960This week
statem/statem.c in OpenSSL 1.1.0a does not consider memory-block movement after a realloc call, which allows remote attackers to cause a den
CriticalCVSS 9.8No exploitEPSS 70%openssl · opensslSep 26, 2016
- CVE-2022-206858Plan
The c_rehash script allows command injection
HighCVSS 7.3No exploitEPSS 95%openssl · opensslJun 21, 2022
- CVE-2014-022458Plan
OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h does not properly restrict processing of ChangeCipherSpec messages, whi
HighCVSS 7.4WeaponizedEPSS 95%openssl · opensslJun 5, 2014
- CVE-2016-218358Plan
The DES and Triple DES ciphers, as used in the TLS, SSH, and IPSec protocols and other protocols and products, have a birthday bound of appr
HighCVSS 7.5Proof of conceptEPSS 95%redhat · jboss enterprise application platformAug 31, 2016
- CVE-2022-378658Plan
X.509 Email Address Variable Length Buffer Overflow
HighCVSS 7.5Proof of conceptEPSS 92%openssl · opensslNov 1, 2022
- CVE-2014-019557Plan
The dtls1_reassemble_fragment function in d1_both.c in OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h does not properl
MediumCVSS 6.8WeaponizedEPSS 100%openssl · opensslJun 5, 2014
- CVE-2022-360257Plan
X.509 Email Address 4-byte Buffer Overflow
HighCVSS 7.5Proof of conceptEPSS 91%openssl · opensslNov 1, 2022
- CVE-2002-065657Plan
Buffer overflows in OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, allow remote attackers to execute arbitrary code via (1) a larg
HighCVSS 7.5Proof of conceptEPSS 90%openssl · opensslAug 12, 2002
- CVE-2016-284255Plan
The doapr_outch function in crypto/bio/b_print.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g does not verify that a certain memor
CriticalCVSS 9.8No exploitEPSS 54%openssl · opensslMar 3, 2016
- CVE-2006-373855Plan
Buffer overflow in the SSL_get_shared_ciphers function in OpenSSL 0.9.7 before 0.9.7l, 0.9.8 before 0.9.8d, and earlier versions has unspeci
CriticalCVSS 10.0No exploitEPSS 49%openssl · opensslSep 28, 2006
- CVE-2022-129254Plan
The c_rehash script allows command injection
HighCVSS 7.3Proof of conceptEPSS 83%siemens · brownfield connectivity gatewayMay 3, 2022
- CVE-2022-227453Plan
RSA implementation bug in AVX512IFMA instructions
CriticalCVSS 9.8Proof of conceptEPSS 46%openssl · opensslJul 1, 2022
- CVE-2015-178952Plan
The X509_cmp_time function in crypto/x509/x509_vfy.c in OpenSSL before 0.9.8zg, 1.0.0 before 1.0.0s, 1.0.1 before 1.0.1n, and 1.0.2 before 1
HighCVSS 7.5No exploitEPSS 74%openssl · opensslJun 12, 2015
- CVE-2022-077852Plan
Infinite loop in BN_mod_sqrt() reachable when parsing certificates
HighCVSS 7.5Proof of conceptEPSS 73%openssl · opensslMar 15, 2022
- CVE-2016-217752Plan
OpenSSL through 1.0.2h incorrectly uses pointer arithmetic for heap-buffer boundary checks, which might allow remote attackers to cause a de
CriticalCVSS 9.8No exploitEPSS 45%openssl · opensslJun 19, 2016
- CVE-2016-218252Plan
The BN_bn2dec function in crypto/bn/bn_print.c in OpenSSL before 1.1.0 does not properly validate division results, which allows remote atta
CriticalCVSS 9.8No exploitEPSS 44%openssl · opensslSep 16, 2016
- CVE-2008-016651Plan
OpenSSL 0.9.8c-1 up to versions before 0.9.8g-9 on Debian-based operating systems uses a random number generator that generates predictable
HighCVSS 7.5Proof of conceptEPSS 71%openssl · opensslMay 13, 2008
- CVE-2014-351251Plan
Multiple buffer overflows in crypto/srp/srp_lib.c in the SRP implementation in OpenSSL 1.0.1 before 1.0.1i allow remote attackers to cause a
HighCVSS 7.5No exploitEPSS 69%openssl · opensslAug 13, 2014
- CVE-2025-1546751Plan
Stack buffer overflow in CMS (Auth)EnvelopedData parsing
HighCVSS 8.8Proof of conceptEPSS 52%openssl · opensslJan 27, 2026
- CVE-2016-210750Plan
The AES-NI implementation in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h does not consider memory allocation during a certain padding chec
MediumCVSS 5.9Proof of conceptEPSS 89%openssl · opensslMay 4, 2016