OpenSSL have published a security advisory. Here's how it affects BoringSSL:
| CVE | Summary | Severity in OpenSSL | Impact to BoringSSL |
|---|---|---|---|
| CVE-2018-0732 | Client DoS due to large DH parameter | Low | Not affected; we independently fixed this in 2015 and removed DHE cipher suites from TLS altogether in 2017. |