Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-3468

Опубликовано: 05 июн. 2014
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.5

Описание

The asn1_get_bit_der function in GNU Libtasn1 before 3.6 does not properly report an error when a negative bit length is identified, which allows context-dependent attackers to cause out-of-bounds access via crafted ASN.1 data.

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

released

2.4-1ubuntu0.2
precise

released

2.10-1ubuntu1.2
saucy

ignored

end of life
trusty

DNE

trusty/esm

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

not-affected

3.6-1
esm-infra-legacy/trusty

not-affected

3.4-3ubuntu0.1
lucid

DNE

precise

DNE

saucy

ignored

end of life
trusty

released

3.4-3ubuntu0.1
trusty/esm

not-affected

3.4-3ubuntu0.1
upstream

released

3.6

Показывать по

EPSS

Процентиль: 91%
0.07656
Низкий

7.5 High

CVSS2

Связанные уязвимости

redhat
около 11 лет назад

The asn1_get_bit_der function in GNU Libtasn1 before 3.6 does not properly report an error when a negative bit length is identified, which allows context-dependent attackers to cause out-of-bounds access via crafted ASN.1 data.

nvd
около 11 лет назад

The asn1_get_bit_der function in GNU Libtasn1 before 3.6 does not properly report an error when a negative bit length is identified, which allows context-dependent attackers to cause out-of-bounds access via crafted ASN.1 data.

debian
около 11 лет назад

The asn1_get_bit_der function in GNU Libtasn1 before 3.6 does not prop ...

github
больше 3 лет назад

The asn1_get_bit_der function in GNU Libtasn1 before 3.6 does not properly report an error when a negative bit length is identified, which allows context-dependent attackers to cause out-of-bounds access via crafted ASN.1 data.

oracle-oval
около 11 лет назад

ELSA-2014-0687: libtasn1 security update (MODERATE)

EPSS

Процентиль: 91%
0.07656
Низкий

7.5 High

CVSS2