It was discovered that OpenSSL incorrectly handled memory in the ssl3readbytes() function. A remote attacker could use this issue to possibly cause OpenSSL to crash, resulting in a denial of service. (CVE-2010-5298)
It was discovered that OpenSSL incorrectly handled memory in the dossl3write() function. A remote attacker could use this issue to possibly cause OpenSSL to crash, resulting in a denial of service. (CVE-2014-0198)