cve/2016/CVE-2016-7054.md
2024-06-18 02:51:15 +02:00

2.4 KiB

CVE-2016-7054

Description

In OpenSSL 1.1.0 before 1.1.0c, TLS connections using *-CHACHA20-POLY1305 ciphersuites are susceptible to a DoS attack by corrupting larger payloads. This can result in an OpenSSL crash. This issue is not considered to be exploitable beyond a DoS.

POC

Reference

Github