Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-3468

Опубликовано: 05 июн. 2014
Источник: debian
EPSS Средний

Описание

The asn1_get_bit_der function in GNU Libtasn1 before 3.6 does not properly report an error when a negative bit length is identified, which allows context-dependent attackers to cause out-of-bounds access via crafted ASN.1 data.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libtasn1-3removedpackage
libtasn1-6fixed3.6-1package

EPSS

Процентиль: 93%
0.11221
Средний

Связанные уязвимости

ubuntu
больше 11 лет назад

The asn1_get_bit_der function in GNU Libtasn1 before 3.6 does not properly report an error when a negative bit length is identified, which allows context-dependent attackers to cause out-of-bounds access via crafted ASN.1 data.

redhat
больше 11 лет назад

The asn1_get_bit_der function in GNU Libtasn1 before 3.6 does not properly report an error when a negative bit length is identified, which allows context-dependent attackers to cause out-of-bounds access via crafted ASN.1 data.

nvd
больше 11 лет назад

The asn1_get_bit_der function in GNU Libtasn1 before 3.6 does not properly report an error when a negative bit length is identified, which allows context-dependent attackers to cause out-of-bounds access via crafted ASN.1 data.

github
больше 3 лет назад

The asn1_get_bit_der function in GNU Libtasn1 before 3.6 does not properly report an error when a negative bit length is identified, which allows context-dependent attackers to cause out-of-bounds access via crafted ASN.1 data.

oracle-oval
больше 11 лет назад

ELSA-2014-0687: libtasn1 security update (MODERATE)

EPSS

Процентиль: 93%
0.11221
Средний