(Q16244272)

English

Heartbleed

software bug in OpenSSL

  • Heartbleed bug
  • CVE-2014-0160

Statements

Identifiers

CWE-130: Improper Handling of Length Parameter Inconsistency
CVE-2014-0160 Chain: "Heartbleed" bug receives an inconsistent length parameter (CWE-130) enabling an out-of-bounds read (CWE-126), returning memory that could include private cryptographic keys and other sensitive data.
0 references
CWE-126: Buffer Over-read
CVE-2014-0160 Chain: "Heartbleed" bug receives an inconsistent length parameter (CWE-130) enabling an out-of-bounds read (CWE-126), returning memory that could include private cryptographic keys and other sensitive data.
0 references
CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
0 references
 
edit
    edit
      edit
        edit
          edit
            edit
              edit
                edit