Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6v99-57j9-cq4w

Опубликовано: 22 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

An issue was discovered in mouse07410 asn1c thru 0.9.29 (2025-03-20) - a fork of vlm asn1c. In UPER (Unaligned Packed Encoding Rules), asn1c-generated decoders fail to enforce INTEGER constraints when the bound is positive and exceeds 32 bits in length, potentially allowing incorrect or malicious input to be processed.

An issue was discovered in mouse07410 asn1c thru 0.9.29 (2025-03-20) - a fork of vlm asn1c. In UPER (Unaligned Packed Encoding Rules), asn1c-generated decoders fail to enforce INTEGER constraints when the bound is positive and exceeds 32 bits in length, potentially allowing incorrect or malicious input to be processed.

EPSS

Процентиль: 26%
0.00093
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-1284

Связанные уязвимости

CVSS3: 9.8
nvd
6 месяцев назад

An issue was discovered in mouse07410 asn1c thru 0.9.29 (2025-03-20) - a fork of vlm asn1c. In UPER (Unaligned Packed Encoding Rules), asn1c-generated decoders fail to enforce INTEGER constraints when the bound is positive and exceeds 32 bits in length, potentially allowing incorrect or malicious input to be processed.

EPSS

Процентиль: 26%
0.00093
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-1284