Vulnerabilities (CVE)

Filtered by vendor Erlang Subscribe
Filtered by product Erlang\/otp
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-37026 1 Erlang 1 Erlang\/otp 2023-08-08 N/A 9.8 CRITICAL
In Erlang/OTP before 23.3.4.15, 24.x before 24.3.4.2, and 25.x before 25.0.2, there is a Client Authentication Bypass in certain client-certification situations for SSL, TLS, and DTLS.
CVE-2016-10253 1 Erlang 1 Erlang\/otp 2018-07-11 7.5 HIGH 9.8 CRITICAL
An issue was discovered in Erlang/OTP 18.x. Erlang's generation of compiled regular expressions is vulnerable to a heap overflow. Regular expressions using a malformed extpattern can indirectly specify an offset that is used as an array index. This ordinal permits arbitrary regions within the erts_alloc arena to be both read and written to.