Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:37779
HistoryNov 03, 2022 - 2:52 a.m.

Denial Of Service (DoS)

2022-11-0302:52:05
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
34
denial of service
libtasn1.so
struct tag_and_class_st
etype_ok
array size check
malicious input
software

EPSS

0.004

Percentile

73.3%

libtasn1.so is vulnerable to Denial Of Service (DoS). The vulnerability exists in struct tag_and_class_st function of init.h due to an ETYPE_OK off-by-one array size check which allows an attacker to crash the application via malicious input.

References