Improper Check for Unusual or Exceptional Conditions Affecting openbsd/src package, versions [,7.2)


Severity

Recommended
0.0
medium
0
10

CVSS assessment made by Snyk's Security Team. Learn more

Threat Intelligence

EPSS
0.07% (33rd percentile)

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications
  • Snyk IDSNYK-UNMANAGED-OPENBSDSRC-5419181
  • published12 Apr 2023
  • disclosed12 Apr 2023
  • creditIlya Shipitsin

Introduced: 12 Apr 2023

CVE-2022-48437  (opens in a new tab)
CWE-754  (opens in a new tab)

How to fix?

Upgrade openbsd/src to version 7.2 or higher.

Overview

Affected versions of this package are vulnerable to Improper Check for Unusual or Exceptional Conditions such that x509_verify_ctx_add_chain does not store errors that occur during leaf certificate verification, and therefore an incorrect error is returned. This behavior occurs when there is an installed verification callback that instructs the verifier to continue upon detecting an invalid certificate.

CVSS Scores

version 3.1