{"id":"CLSA-2021-1639681783","summary":"Fix CVE(s): CVE-2021-3712","details":"\n   * SECURITY UPDATE: fix assumption that ASN.1 string is NULL terminated\n   \twhen it exactly doesn't.\n   \t- debian/patches/CVE-2021-3712.patch: backport all found cases where\n   \t  code relayed on assumtion that ASN.1 string is NULL terminated\n   \t- CVE-2021-3712","modified":"2026-06-04T09:45:40.316236304Z","published":"2021-12-16T19:09:43Z","upstream":["CVE-2021-3712"],"references":[{"type":"ADVISORY","url":"https://errata.cloudlinux.com/ubuntu16_04/CLSA-2021-1639681783"}],"affected":[{"package":{"name":"libssl-dev","ecosystem":"TuxCare:Ubuntu:16.04","purl":"pkg:deb/tuxcare/libssl-dev?distro=ubuntu-16.04"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.0.2g-1ubuntu4.21"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2021-1639681783.json"}},{"package":{"name":"libssl-doc","ecosystem":"TuxCare:Ubuntu:16.04","purl":"pkg:deb/tuxcare/libssl-doc?distro=ubuntu-16.04"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.0.2g-1ubuntu4.21"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2021-1639681783.json"}},{"package":{"name":"libssl1.0.0","ecosystem":"TuxCare:Ubuntu:16.04","purl":"pkg:deb/tuxcare/libssl1.0.0?distro=ubuntu-16.04"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.0.2g-1ubuntu4.21"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2021-1639681783.json"}},{"package":{"name":"openssl","ecosystem":"TuxCare:Ubuntu:16.04","purl":"pkg:deb/tuxcare/openssl?distro=ubuntu-16.04"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.0.2g-1ubuntu4.21"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2021-1639681783.json"}}],"schema_version":"1.7.5"}