CVE-2015-3622

Priority
Description
The _asn1_extract_der_octet function in lib/decoding.c in GNU Libtasn1
before 4.5 allows remote attackers to cause a denial of service
(out-of-bounds heap read) via a crafted certificate.
Assigned-to
mdeslaur
Notes
Package
Upstream:needs-triage
Ubuntu 14.04 ESM (Trusty Tahr):DNE
Package
Upstream:released (4.4-3)
Ubuntu 14.04 ESM (Trusty Tahr):released (3.4-3ubuntu0.3)
Patches:
Upstream:http://git.savannah.gnu.org/gitweb/?p=libtasn1.git;a=commit;h=f979435823a02f842c41d49cd41cc81f25b5d677
More Information

Updated: 2019-12-05 18:41:08 UTC (commit dd38ff22974aae499eb50644b9d5a2817483cbdb)