Known Vulnerabilities for Libtasn1 by Gnu
Listed below are 10 of the newest known vulnerabilities associated with "Libtasn1" by "Gnu".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-46848 json | GNU Libtasn1 before 4.19.0 has an ETYPE_OK off-by-one array size check that affects asn1_encode_simple_der. | 9.1 - CRITICAL | 2022-10-24 | 2023-11-07 |
| CVE-2018-1000654 json | GNU Libtasn1-4.13 libtasn1-4.13 version libtasn1-4.13, libtasn1-4.12 contains a DoS, specifically CPU usage will reach 100% w... | 5.5 - MEDIUM | 2018-08-20 | 2023-11-07 |
| CVE-2018-6003 json | An issue was discovered in the _asn1_decode_simple_ber function in decoding.c in GNU Libtasn1 before 4.13. Unlimited recursio... | 7.5 - HIGH | 2018-01-22 | 2023-11-07 |
| CVE-2017-10790 json | The _asn1_check_identifier function in GNU Libtasn1 through 4.12 causes a NULL pointer dereference and crash when reading cra... | 7.5 - HIGH | 2017-07-02 | 2023-11-07 |
| CVE-2017-6891 json | Two errors in the "asn1_find_node()" function (lib/parser_aux.c) within GnuTLS libtasn1 version 4.10 can be exploited to caus... | 8.8 - HIGH | 2017-05-22 | 2023-11-07 |
| CVE-2016-4008 json | The _asn1_extract_der_octet function in lib/decoding.c in GNU Libtasn1 before 4.8, when used without the ASN1_DECODE_FLAG_STR... | 5.9 - MEDIUM | 2016-05-05 | 2023-11-07 |
| CVE-2015-3622 json | The _asn1_extract_der_octet function in lib/decoding.c in GNU Libtasn1 before 4.5 allows remote attackers to cause a denial o... | 4.3 - MEDIUM | 2015-05-12 | 2018-10-30 |
| CVE-2015-2806 json | Stack-based buffer overflow in asn1_der_decoding in libtasn1 before 4.4 allows remote attackers to have unspecified impact vi... | 10 - HIGH | 2015-04-10 | 2023-11-07 |
| CVE-2014-3469 json | The (1) asn1_read_value_type and (2) asn1_read_value functions in GNU Libtasn1 before 3.6 allows context-dependent attackers ... | 5 - MEDIUM | 2014-06-05 | 2020-11-16 |
| CVE-2014-3468 json | The asn1_get_bit_der function in GNU Libtasn1 before 3.6 does not properly report an error when a negative bit length is iden... | 7.5 - HIGH | 2014-06-05 | 2020-11-16 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Gnu | Libtasn1 | 4.9 | |||
| Application | Gnu | Libtasn1 | 4.8 | |||
| Application | Gnu | Libtasn1 | 4.7 | |||
| Application | Gnu | Libtasn1 | 4.6 | |||
| Application | Gnu | Libtasn1 | 4.5 | |||
| Application | Gnu | Libtasn1 | 4.4 | |||
| Application | Gnu | Libtasn1 | 4.3 | |||
| Application | Gnu | Libtasn1 | 4.2 | |||
| Application | Gnu | Libtasn1 | 4.13 | |||
| Application | Gnu | Libtasn1 | 4.12 | |||
| Application | Gnu | Libtasn1 | 4.10 | |||
| Application | Gnu | Libtasn1 | 4.1 | |||
| Application | Gnu | Libtasn1 | 4.0 | |||
| Application | Gnu | Libtasn1 | 3.9 | |||
| Application | Gnu | Libtasn1 | 3.8 | |||
| Application | Gnu | Libtasn1 | 3.7 | |||
| Application | Gnu | Libtasn1 | 3.6 | |||
| Application | Gnu | Libtasn1 | 3.5 | |||
| Application | Gnu | Libtasn1 | 3.4 | |||
| Application | Gnu | Libtasn1 | 3.3 |