The Gost Engine Project provides a cryptographic library implementing GOST standards for OpenSSL, with a narrowly scoped product footprint centered on the Gost Engine component itself. The identified vulnerability class involves classic buffer-overflow conditions in the library's handling of input data, reflecting the memory-safety demands inherent to cryptographic implementations. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Gost Engine Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-29242HIGH GOST engine is a reference implementation of the Russian GOST crypto algorithms for OpenSSL. TLS clients using GOST engine when ciphersuite `TLS_GOSTR341112_256_WITH_KUZNYECHIK_CTR | May 24, 2022 | 7.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Gost Engine Project.
Media articles that mention a CVE ID that affects a product developed by Gost Engine Project — matched by CVE ID, not by vendor name.