Boletines de Vulnerabilidades

DSA-3220 libtasn1-3 - security update


Información sobre el sistema

   
Software afectado Debian

Descripción

Hanno Boeck discovered a stack-based buffer overflow in theasn1_der_decoding function in Libtasn1, a library to manage ASN.1structures. A remote attacker could take advantage of this flaw to causean application using the Libtasn1 library to crash, or potentially toexecute arbitrary code.

More info:

https://www.debian.org/security/2015/dsa-3220

Identificadores estándar

Propiedad Valor
CVE CVE-2015-2806 and DSA-3220.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2015-04-14

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT