logo

Critical Vulnerability in OpenSSL!

ID: 89db50bc-2c3b-5b55-86b1-f751f30247f4

STIX ID: report--89db50bc-2c3b-5b55-86b1-f751f30247f4

Feed Name: Censys Blog

Threat Score
65/100

Date Published: 2022-11-01

Date Updated: 2026-04-27

...
...

This report describes two high-severity buffer-overflow vulnerabilities in OpenSSL 3.0.x (CVE-2022-3786 and CVE-2022-3602) affecting X.509 certificate verification that could enable denial-of-service or remote code execution; it recommends upgrading to OpenSSL 3.0.7 and includes internet-wide telemetry showing ~7,062 hosts advertising OpenSSL >=3.0.0, country distributions, and methods for identifying affected hosts.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.