-
Bug
-
Resolution: Done
-
Minor
-
JWS 3.0.0 GA
-
None
-
Release Notes
-
-
-
-
-
-
Documented as Resolved Issue
A NULL pointer dereference flaw was found in OpenSSL's X509_to_X509_REQ() function. A remote attacker could use this flaw to crash an OpenSSL server with an invalid certificate key. Note that this function is rarely used in practice.