Three vulnerabilities lie in the ASN.1 parsing for OpenSSL versions up to 0.9.6j and 0.9.7b and all versions of SSLeay. All of the vulnerabilities result in a denial of service and there is still speculation as to whether possible arbitrary code execution is possible.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/31738/secadv_20030930.txt
Source: https://packetstormsecurity.com/files/31738/secadv_20030930.txt.html

