Описание
Stack-based buffer overflow in libtasn1 version: v4.20.0. The function fails to validate the size of input data resulting in a buffer overflow in asn1_expend_octet_string.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| libtasn1-6 | fixed | 4.21.0-1 | experimental | package |
| libtasn1-6 | fixed | 4.21.0-2 | package | |
| libtasn1-6 | no-dsa | trixie | package | |
| libtasn1-6 | no-dsa | bookworm | package | |
| libtasn1-6 | postponed | bullseye | package |
Примечания
https://gitlab.com/gnutls/libtasn1/-/issues/55
https://gitlab.com/gnutls/libtasn1/-/merge_requests/121
https://gitlab.com/gnutls/libtasn1/-/commit/d276cc495a2a32b182c3c39851f1ba58f2d9f9b8 (v4.21.0)
Advisory: https://gitlab.com/gnutls/libtasn1/-/blob/master/doc/security/CVE-2025-13151.md
EPSS
Связанные уязвимости
Stack-based buffer overflow in libtasn1 version: v4.20.0. The function fails to validate the size of input data resulting in a buffer overflow in asn1_expend_octet_string.
Stack-based buffer overflow in libtasn1 version: v4.20.0. The function fails to validate the size of input data resulting in a buffer overflow in asn1_expend_octet_string.
Stack-based buffer overflow in libtasn1 version: v4.20.0. The function fails to validate the size of input data resulting in a buffer overflow in asn1_expend_octet_string.
EPSS