Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-1000654

Опубликовано: 20 авг. 2018
Источник: ubuntu
Приоритет: negligible
EPSS Низкий
CVSS2: 7.1
CVSS3: 5.5

Описание

GNU Libtasn1-4.13 libtasn1-4.13 version libtasn1-4.13, libtasn1-4.12 contains a DoS, specifically CPU usage will reach 100% when running asn1Paser against the POC due to an issue in _asn1_expand_object_id(p_tree), after a long time, the program will be killed. This attack appears to be exploitable via parsing a crafted file.

РелизСтатусПримечание
bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal

DNE

groovy

DNE

hirsute

DNE

Показывать по

РелизСтатусПримечание
bionic

ignored

end of standard support, was needs-triage
cosmic

ignored

end of life
devel

not-affected

4.18.0-4
disco

ignored

end of life
eoan

ignored

end of life
esm-infra-legacy/trusty

needs-triage

esm-infra/bionic

needs-triage

esm-infra/focal

not-affected

4.16.0-2
esm-infra/xenial

released

4.7-3ubuntu0.16.04.3+esm2
focal

not-affected

4.16.0-2

Показывать по

EPSS

Процентиль: 32%
0.00125
Низкий

7.1 High

CVSS2

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 4
redhat
больше 7 лет назад

GNU Libtasn1-4.13 libtasn1-4.13 version libtasn1-4.13, libtasn1-4.12 contains a DoS, specifically CPU usage will reach 100% when running asn1Paser against the POC due to an issue in _asn1_expand_object_id(p_tree), after a long time, the program will be killed. This attack appears to be exploitable via parsing a crafted file.

CVSS3: 5.5
nvd
больше 7 лет назад

GNU Libtasn1-4.13 libtasn1-4.13 version libtasn1-4.13, libtasn1-4.12 contains a DoS, specifically CPU usage will reach 100% when running asn1Paser against the POC due to an issue in _asn1_expand_object_id(p_tree), after a long time, the program will be killed. This attack appears to be exploitable via parsing a crafted file.

CVSS3: 5.5
debian
больше 7 лет назад

GNU Libtasn1-4.13 libtasn1-4.13 version libtasn1-4.13, libtasn1-4.12 c ...

suse-cvrf
больше 6 лет назад

Security update for libtasn1

suse-cvrf
больше 6 лет назад

Security update for libtasn1

EPSS

Процентиль: 32%
0.00125
Низкий

7.1 High

CVSS2

5.5 Medium

CVSS3