Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-3468

Опубликовано: 05 июн. 2014
Источник: debian
EPSS Низкий

Описание

The asn1_get_bit_der function in GNU Libtasn1 before 3.6 does not properly report an error when a negative bit length is identified, which allows context-dependent attackers to cause out-of-bounds access via crafted ASN.1 data.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libtasn1-3removedpackage
libtasn1-6fixed3.6-1package

EPSS

Процентиль: 91%
0.07656
Низкий

Связанные уязвимости

ubuntu
около 11 лет назад

The asn1_get_bit_der function in GNU Libtasn1 before 3.6 does not properly report an error when a negative bit length is identified, which allows context-dependent attackers to cause out-of-bounds access via crafted ASN.1 data.

redhat
около 11 лет назад

The asn1_get_bit_der function in GNU Libtasn1 before 3.6 does not properly report an error when a negative bit length is identified, which allows context-dependent attackers to cause out-of-bounds access via crafted ASN.1 data.

nvd
около 11 лет назад

The asn1_get_bit_der function in GNU Libtasn1 before 3.6 does not properly report an error when a negative bit length is identified, which allows context-dependent attackers to cause out-of-bounds access via crafted ASN.1 data.

github
больше 3 лет назад

The asn1_get_bit_der function in GNU Libtasn1 before 3.6 does not properly report an error when a negative bit length is identified, which allows context-dependent attackers to cause out-of-bounds access via crafted ASN.1 data.

oracle-oval
около 11 лет назад

ELSA-2014-0687: libtasn1 security update (MODERATE)

EPSS

Процентиль: 91%
0.07656
Низкий