CVE Explorer
CVE-2026-34180
Issue summary: Parsing a crafted DER-encoded ASN.1 structure with a primitive
element whose content exceeds 2 gigabytes in length may cause a heap buffer
over-read on 64-bit Unix and Unix-like platforms.
Impact summary: The heap buffer over-read may crash the application (Denial of
Service) or to load into the decoded ASN.1 object contents of memory beyond the
end of the input buffer. More typically such ASN.1 elements would instead be
truncated.
An integer truncation in OpenSSL's ASN.1 decod
Known exploited
Not asserted
Disputed
No
Stale source
No
Conflicts
0
Affected products and versions
1 source assertion{"defaultStatus":"unaffected","product":"OpenSSL","vendor":"OpenSSL","versions":[{"lessThan":"4.0.1","status":"affected","version":"4.0.0","versionType":"semver"},{"lessThan":"3.6.3","status":"affected","version":"3.6.0","versionType":"semver"},{"lessThan":"3.5.7","status":"affected","version":"3.5.0","versionType":"semver"},{"lessThan":"3.4.6","status":"affected","version":"3.4.0","versionType":"semver"},{"lessThan":"3.0.21","status":"affected","version":"3.0.0","versionType":"semver"},{"lessThan":"1.1.1zh","status":"affected","version":"1.1.1","versionType":"custom"},{"lessThan":"1.0.2zq","s…
- cve_program_cvelist_v5affectedurn:baitaphish:normalized-source-record:v2:d54155c448dba76edcc5c489c1675c0a5e5e4fa1c7ff4957a27678eb55cf6223 · sha256:677881285e49aefb… · /containers/cna/affected/0
Provider-owned CVSS observations
1 source assertion{"metric":{"attackComplexity":"LOW","attackVector":"NETWORK","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH","confidentialityImpact":"NONE","integrityImpact":"NONE","privilegesRequired":"NONE","scope":"UNCHANGED","userInteraction":"NONE","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","version":"3.1"},"metric_type":"cvssV3_1"}
- cve_program_cvelist_v5cvssurn:baitaphish:normalized-source-record:v2:d54155c448dba76edcc5c489c1675c0a5e5e4fa1c7ff4957a27678eb55cf6223 · sha256:677881285e49aefb… · /containers/adp/0/metrics/0/cvssV3_1
CWE assertions
1 source assertion{"cweId":"CWE-125","description":"CWE-125 Out-of-bounds Read","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:d54155c448dba76edcc5c489c1675c0a5e5e4fa1c7ff4957a27678eb55cf6223 · sha256:677881285e49aefb… · /containers/cna/problemTypes/0/descriptions/0
Source references
6 source assertions{"name":"3.4.6 git commit","tags":["patch"],"url":"https://github.com/openssl/openssl/commit/1c6908e4fa5fa568752221d8eaf561a809751e5d"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d54155c448dba76edcc5c489c1675c0a5e5e4fa1c7ff4957a27678eb55cf6223 · sha256:677881285e49aefb… · /containers/cna/references/4
{"name":"3.0.21 git commit","tags":["patch"],"url":"https://github.com/openssl/openssl/commit/cbe418ae978539cf14a398a207dba834c0e93e83"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d54155c448dba76edcc5c489c1675c0a5e5e4fa1c7ff4957a27678eb55cf6223 · sha256:677881285e49aefb… · /containers/cna/references/5
{"name":"3.6.3 git commit","tags":["patch"],"url":"https://github.com/openssl/openssl/commit/d93853c42110d6319e3df07842b488cb9f7ac5ff"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d54155c448dba76edcc5c489c1675c0a5e5e4fa1c7ff4957a27678eb55cf6223 · sha256:677881285e49aefb… · /containers/cna/references/2
{"name":"3.5.7 git commit","tags":["patch"],"url":"https://github.com/openssl/openssl/commit/da5d62af75f69d6fbf7803743d7c56ac75461e43"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d54155c448dba76edcc5c489c1675c0a5e5e4fa1c7ff4957a27678eb55cf6223 · sha256:677881285e49aefb… · /containers/cna/references/3
{"name":"4.0.1 git commit","tags":["patch"],"url":"https://github.com/openssl/openssl/commit/f696c73c3e61b8c502d040af62e690c060908a16"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d54155c448dba76edcc5c489c1675c0a5e5e4fa1c7ff4957a27678eb55cf6223 · sha256:677881285e49aefb… · /containers/cna/references/1
{"name":"OpenSSL Advisory","tags":["vendor-advisory"],"url":"https://openssl-library.org/news/secadv/20260609.txt"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d54155c448dba76edcc5c489c1675c0a5e5e4fa1c7ff4957a27678eb55cf6223 · sha256:677881285e49aefb… · /containers/cna/references/0
Attribution and limitations
- CVE Program CVEList V5: Reproduce the MITRE copyright designation and CVE license in copies. Source →
Provider severity values are preserved separately. Baitaphish does not convert them into a risk rating, infer affected products, or treat EPSS as observed exploitation.