GHSA-6hcf-g6gr-hhcr

Suggest an improvement
Source
https://github.com/advisories/GHSA-6hcf-g6gr-hhcr
Import Source
https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2023/03/GHSA-6hcf-g6gr-hhcr/GHSA-6hcf-g6gr-hhcr.json
JSON Data
https://api.osv.dev/v1/vulns/GHSA-6hcf-g6gr-hhcr
Aliases
Published
2023-03-24T22:01:23Z
Modified
2023-11-08T04:16:17.438606Z
Summary
`openssl` `X509Extension::new` and `X509Extension::new_nid` null pointer dereference
Details

These functions would crash when the context argument was None with certain extension types.

Thanks to David Benjamin (Google) for reporting this issue.

References

Affected packages

crates.io / openssl

Package

Affected ranges

Type
SEMVER
Events
Introduced
0.9.7
Fixed
0.10.48