Lucene search

K
cve[email protected]CVE-2006-0645
HistoryFeb 10, 2006 - 6:06 p.m.

CVE-2006-0645

2006-02-1018:06:00
web.nvd.nist.gov
30
vulnerability
libtasn1
code execution
der decoder
cve-2006-0645
nvd

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

7.1 High

AI Score

Confidence

Low

0.03 Low

EPSS

Percentile

91.0%

Tiny ASN.1 Library (libtasn1) before 0.2.18, as used by (1) GnuTLS 1.2.x before 1.2.10 and 1.3.x before 1.3.4, and (2) GNU Shishi, allows attackers to crash the DER decoder and possibly execute arbitrary code via “out-of-bounds access” caused by invalid input, as demonstrated by the ProtoVer SSL test suite.

Affected configurations

NVD
Node
free_software_foundation_inc.libtasn1Match0.1.0
OR
free_software_foundation_inc.libtasn1Match0.1.1
OR
free_software_foundation_inc.libtasn1Match0.1.2
OR
free_software_foundation_inc.libtasn1Match0.2.0
OR
free_software_foundation_inc.libtasn1Match0.2.1
OR
free_software_foundation_inc.libtasn1Match0.2.2
OR
free_software_foundation_inc.libtasn1Match0.2.3
OR
free_software_foundation_inc.libtasn1Match0.2.4
OR
free_software_foundation_inc.libtasn1Match0.2.5
OR
free_software_foundation_inc.libtasn1Match0.2.6
OR
free_software_foundation_inc.libtasn1Match0.2.7
OR
free_software_foundation_inc.libtasn1Match0.2.8
OR
free_software_foundation_inc.libtasn1Match0.2.9
OR
free_software_foundation_inc.libtasn1Match0.2.10
OR
free_software_foundation_inc.libtasn1Match0.2.11
OR
free_software_foundation_inc.libtasn1Match0.2.12
OR
free_software_foundation_inc.libtasn1Match0.2.13
OR
free_software_foundation_inc.libtasn1Match0.2.14
OR
free_software_foundation_inc.libtasn1Match0.2.15
OR
free_software_foundation_inc.libtasn1Match0.2.16
OR
free_software_foundation_inc.libtasn1Match0.2.17

References

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

7.1 High

AI Score

Confidence

Low

0.03 Low

EPSS

Percentile

91.0%